Vulnerabilities (CVE)

Filtered by CWE-122
Total 3151 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2026-68888 2026-09-09 N/A 7.8 HIGH
Heap-based buffer overflow in Microsoft Standard XPS allows an authorized attacker to elevate privileges locally.
CVE-2026-58600 2026-09-09 N/A 7.8 HIGH
Heap-based buffer overflow in Microsoft Windows Codecs Library allows an unauthorized attacker to elevate privileges locally.
CVE-2026-77898 1 Microsoft 5 365 Apps, Microsoft 365, Office 2019 and 2 more 2026-09-09 N/A 7.5 HIGH
Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code over a network.
CVE-2026-78505 1 Microsoft 6 365 Apps, Microsoft 365, Office 2016 and 3 more 2026-09-09 N/A 8.8 HIGH
Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code over a network.
CVE-2026-78509 1 Microsoft 6 365 Apps, Microsoft 365, Office 2019 and 3 more 2026-09-09 N/A 9.8 CRITICAL
Heap-based buffer overflow in Microsoft Office Outlook allows an unauthorized attacker to execute code over a network.
CVE-2026-69586 2026-09-09 N/A 9.8 CRITICAL
Integer overflow or wraparound in Microsoft Windows PDF allows an unauthorized attacker to execute code over a network.
CVE-2026-69272 2026-09-09 N/A 7.1 HIGH
Heap-based buffer overflow in Microsoft Standard XPS allows an authorized attacker to elevate privileges over a network.
CVE-2026-78447 1 Microsoft 12 Windows 10 1607, Windows 10 1809, Windows 10 21h2 and 9 more 2026-09-09 N/A 7.8 HIGH
Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally.
CVE-2026-73023 2026-09-09 N/A 8.8 HIGH
Heap-based buffer overflow in Windows Imaging Component allows an unauthorized attacker to execute code over a network.
CVE-2026-73018 2026-09-09 N/A 8.8 HIGH
Heap-based buffer overflow in Graphic Fonts allows an unauthorized attacker to execute code over a network.
CVE-2026-73013 2026-09-09 N/A 8.8 HIGH
Heap-based buffer overflow in Windows Imaging Component allows an unauthorized attacker to execute code over a network.
CVE-2026-72953 2026-09-09 N/A 7.8 HIGH
Heap-based buffer overflow in Windows USB Driver allows an authorized attacker to elevate privileges locally.
CVE-2026-71349 2026-09-09 N/A 6.8 MEDIUM
Heap-based buffer overflow in Windows Spaceport.sys allows an unauthorized attacker to execute code with a physical attack.
CVE-2026-69786 2026-09-09 N/A 8.1 HIGH
Heap-based buffer overflow in Windows Text Shaping allows an unauthorized attacker to execute code over a network.
CVE-2026-69478 2026-09-09 N/A 7.8 HIGH
Heap-based buffer overflow in Windows Device Association Service allows an authorized attacker to elevate privileges locally.
CVE-2026-69444 2026-09-09 N/A 7.8 HIGH
Heap-based buffer overflow in Microsoft Windows Speech allows an authorized attacker to elevate privileges locally.
CVE-2026-69334 2026-09-09 N/A 8.8 HIGH
Heap-based buffer overflow in Windows Volume Manager Extension Driver allows an unauthorized attacker to execute code over a network.
CVE-2026-58599 2026-09-09 N/A 7.8 HIGH
Heap-based buffer overflow in Microsoft Windows Codecs Library allows an unauthorized attacker to execute code locally.
CVE-2026-79377 2026-09-09 N/A 7.5 HIGH
A heap overflow in the a2dp_decoder_sbc.cpp component of Bestechnic Co., Ltd BES2300 Bluetooth Audio SoC firmware v3.x and earlier allows attackers to cause a Denial of Service (DoS) via sending a crafted L2CAP packet.
CVE-2025-70293 2026-09-09 N/A 9.8 CRITICAL
An issue was discovered in Denx U-Boot before 2026.04. An integer overflow vulnerability exists in function ext4fs_get_bgdtable, the size calculation can lead to under allocation and this underallocated buffer will be used in memcpy() which could lead to arbitrary code execution, a denial of service, or other unspecified impacts.