Weaknesses of type CWE-122

3,195 results

Transbordamento de heap (heap overflow)

Ocorre quando um programa escreve dados além dos limites de um buffer alocado dinamicamente na memória heap, sobrescrevendo dados adjacentes ou metadados do alocador. Isso permite que um atacante corrompa estruturas críticas, execute código arbitrário ou cause travamento da aplicação.

Example

Uma função recebe um tamanho de entrada sem validar e copia para um buffer: `strcpy(heap_buffer, user_input)` sem verificar se user_input cabe. Se o usuário enviar 1000 bytes para um buffer de 256, o overflow sobrescreve estruturas próximas no heap e pode ser explorado para RCE.

How to mitigate

Use funções seguras de cópia (`strncpy`, `strlcpy`), valide e limite o tamanho da entrada antes de copiar, e considere usar linguagens com gerenciamento automático de memória ou ferramentas como AddressSanitizer durante testes para detectar overflows.

CVE-2025-57638HIGHBuffer overflow vulnerability in Tenda AC9 1.0 via the user supplied sys.vendor configuration value.EPSS 0.4%CVE-2023-49528HIGHBuffer Overflow vulnerability in FFmpeg version n6.1-3-g466799d4f5, allows a local attacker to execute arbitrary code and cause a denial of EPSS 0.4%CVE-2023-25868HIGHAdobe Substance 3D Stager SVG File Parsing Heap-based Buffer Overflow Remote Code Execution VulnerabilityEPSS 0.4%CVE-2023-25864HIGHAdobe Substance 3D Stager FBX File Parsing Heap-based Buffer Overflow Remote Code Execution VulnerabilityEPSS 0.4%CVE-2023-22236HIGHAdobe Animate Heap-based Buffer Overflow Arbitrary code executionEPSS 0.4%CVE-2023-25874HIGHAdobe Substance 3D Stager SVG File Parsing Heap-based Buffer Overflow Remote Code Execution VulnerabilityEPSS 0.4%CVE-2024-51737HIGHRediSearch Integer Overflow with LIMIT or KNN arguments can lead to RCEEPSS 0.4%CVE-2026-3845HIGHHeap buffer overflow in the Audio/Video: Playback component in Firefox for AndroidEPSS 0.4%CVE-2026-1145MEDIUMquickjs-ng quickjs quickjs.c js_typed_array_constructor_ta heap-based overflowEPSS 0.4%CVE-2021-25449MEDIUMAn improper input validation vulnerability in libsapeextractor library prior to SMR Sep-2021 Release 1 allows attackers to execute arbitraryEPSS 0.4%CVE-2023-21528HIGHMicrosoft SQL Server Remote Code Execution VulnerabilityEPSS 0.4%CVE-2025-52870LOWQsync CentralEPSS 0.4%CVE-2025-48724LOWQsync CentralEPSS 0.4%CVE-2026-56189HIGHMicrosoft Windows Media Foundation Remote Code Execution VulnerabilityEPSS 0.4%CVE-2023-47042HIGHZDI-CAN-21696: Adobe Media Encoder MP4 File Parsing Heap-based Buffer Overflow Remote Code Execution VulnerabilityEPSS 0.4%CVE-2026-54241HIGHlibde265: SAO sequential filter heap buffer overflow via signed integer overflowEPSS 0.4%CVE-2025-48723LOWQsync CentralEPSS 0.4%CVE-2026-23665HIGHLinux Azure Diagnostic extension (LAD) Elevation of Privilege VulnerabilityEPSS 0.4%CVE-2023-39494HIGHPDF-XChange Editor OXPS File Parsing Heap-based Buffer Overflow Remote Code Execution VulnerabilityEPSS 0.4%CVE-2023-49501HIGHBuffer Overflow vulnerability in Ffmpeg v.n6.1-3-g466799d4f5 allows a local attacker to execute arbitrary code via the config_eq_output funcEPSS 0.4%