Weaknesses of type CWE-122

3,195 results

Transbordamento de heap (heap overflow)

Ocorre quando um programa escreve dados além dos limites de um buffer alocado dinamicamente na memória heap, sobrescrevendo dados adjacentes ou metadados do alocador. Isso permite que um atacante corrompa estruturas críticas, execute código arbitrário ou cause travamento da aplicação.

Example

Uma função recebe um tamanho de entrada sem validar e copia para um buffer: `strcpy(heap_buffer, user_input)` sem verificar se user_input cabe. Se o usuário enviar 1000 bytes para um buffer de 256, o overflow sobrescreve estruturas próximas no heap e pode ser explorado para RCE.

How to mitigate

Use funções seguras de cópia (`strncpy`, `strlcpy`), valide e limite o tamanho da entrada antes de copiar, e considere usar linguagens com gerenciamento automático de memória ou ferramentas como AddressSanitizer durante testes para detectar overflows.

CVE-2026-5272HIGHHeap buffer overflow in GPU in Google Chrome prior to 146.0.7680.178 allowed a remote attacker to execute arbitrary code via a crafted HTML EPSS 0.4%CVE-2023-32157MEDIUMTesla Model 3 bsa_server BIP Heap-based Buffer Overflow Arbitrary Code Execution VulnerabilityEPSS 0.4%CVE-2023-28905HIGHHeap buffer overflow in picserverEPSS 0.4%CVE-2026-5275HIGHHeap buffer overflow in ANGLE in Google Chrome on Mac prior to 146.0.7680.178 allowed a remote attacker to execute arbitrary code via a crafEPSS 0.4%CVE-2023-42038HIGHKofax Power PDF PDF File Parsing Heap-based Buffer Overflow Remote Code Execution VulnerabilityEPSS 0.4%CVE-2026-73242HIGHFreeRDP: Kerberos GSS Wrap-token `EC` field is unbounded, causing an out-of-bounds decrypt in `kerberos_DecryptMessage`EPSS 0.4%CVE-2025-32397HIGHAn Heap-based Buffer Overflow in RT-Labs P-Net version 1.0.1 or earlier allows an attacker to induce a crash in IO devices that use the librEPSS 0.4%CVE-2023-38090HIGHKofax Power PDF popUpMenu Heap-based Buffer Overflow Remote Code Execution VulnerabilityEPSS 0.4%CVE-2026-21676HIGHiccDEV has a Heap-based Buffer Overflow in its CIccMBB::Validate() functionEPSS 0.4%CVE-2023-35709HIGHAshlar-Vellum Cobalt Heap-based Buffer Overflow Remote Code Execution VulnerabilityEPSS 0.4%CVE-2025-32400HIGHAn Heap-based Buffer Overflow in RT-Labs P-Net version 1.0.1 or earlier allows an attacker to induce a crash in IO devices that use the librEPSS 0.4%CVE-2024-47417HIGHAnimate | Heap-based Buffer Overflow (CWE-122)EPSS 0.4%CVE-2025-2310MEDIUMHDF5 Metadata Attribute Decoder H5MM_strndup heap-based overflowEPSS 0.4%CVE-2023-34289HIGHAshlar-Vellum Cobalt Heap-based Buffer Overflow Remote Code Execution VulnerabilityEPSS 0.4%CVE-2025-32396HIGHAn Heap-based Buffer Overflow in RT-Labs P-Net version 1.0.1 or earlier allows an attacker to induce a crash in IO devices that use the librEPSS 0.4%CVE-2023-34299HIGHAshlar-Vellum Cobalt CO File Parsing Heap-based Buffer Overflow Remote Code Execution VulnerabilityEPSS 0.4%CVE-2023-3291MEDIUMHeap-based Buffer Overflow in gpac/gpacEPSS 0.4%CVE-2024-43756HIGHPhotoshop Desktop | Heap-based Buffer Overflow (CWE-122)EPSS 0.4%CVE-2026-79216HIGHBuffer overflow in Blink in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to execuEPSS 0.4%CVE-2025-50617HIGHA buffer overflow vulnerability has been discovered in Netis WF2880 v2.1.40207 in the FUN_0046ed68 function of the cgitest.cgi file. AttackeEPSS 0.4%