Weaknesses of type CWE-122

3,195 results

Transbordamento de heap (heap overflow)

Ocorre quando um programa escreve dados além dos limites de um buffer alocado dinamicamente na memória heap, sobrescrevendo dados adjacentes ou metadados do alocador. Isso permite que um atacante corrompa estruturas críticas, execute código arbitrário ou cause travamento da aplicação.

Example

Uma função recebe um tamanho de entrada sem validar e copia para um buffer: `strcpy(heap_buffer, user_input)` sem verificar se user_input cabe. Se o usuário enviar 1000 bytes para um buffer de 256, o overflow sobrescreve estruturas próximas no heap e pode ser explorado para RCE.

How to mitigate

Use funções seguras de cópia (`strncpy`, `strlcpy`), valide e limite o tamanho da entrada antes de copiar, e considere usar linguagens com gerenciamento automático de memória ou ferramentas como AddressSanitizer durante testes para detectar overflows.

CVE-2025-49604MEDIUMFor Realtek AmebaD devices, a heap-based buffer overflow was discovered in Ameba-AIoT ameba-arduino-d before version 3.1.9 and ameba-rtos-d EPSS 0.3%CVE-2026-56372MEDIUMImageMagick - Heap Buffer Overflow Read via Unrecognized Magnify MethodEPSS 0.3%CVE-2026-76888LOWHeap-based Buffer Overflow in WiresharkEPSS 0.3%CVE-2026-4455HIGHHeap buffer overflow in PDFium in Google Chrome prior to 146.0.7680.153 allowed a remote attacker to potentially exploit heap corruption viaEPSS 0.3%CVE-2024-31036MEDIUMA heap-buffer-overflow vulnerability in the read_byte function in NanoMQ v.0.21.7 allows attackers to cause a denial of service via transmisEPSS 0.3%CVE-2024-12670HIGHDWFX File Parsing Vulnerabilities in Autodesk Navisworks Desktop SoftwareEPSS 0.3%CVE-2024-12179HIGHDWFX File Parsing Vulnerabilities in Autodesk Navisworks Desktop SoftwareEPSS 0.3%CVE-2025-3158MEDIUMOpen Asset Import Library Assimp LWO File LWOAnimation.cpp UpdateAnimRangeSetup heap-based overflowEPSS 0.3%CVE-2026-9926HIGHHeap buffer overflow in ANGLE in Google Chrome prior to 148.0.7778.216 allowed a remote attacker who had compromised the renderer process toEPSS 0.3%CVE-2026-11716HIGHIBM MQ for HPE NonStop is vulnerable to a denial of service attackEPSS 0.3%CVE-2026-11381HIGHIBM MQ for HPE NonStop is vulnerable to a denial of service issueEPSS 0.3%CVE-2026-9924HIGHHeap buffer overflow in ANGLE in Google Chrome on Windows prior to 148.0.7778.216 allowed a remote attacker who had compromised the rendererEPSS 0.3%CVE-2026-14427HIGHHeap buffer overflow in Skia in Google Chrome prior to 150.0.7871.46 allowed a remote attacker who had compromised the renderer process to pEPSS 0.3%CVE-2026-9915HIGHHeap buffer overflow in ANGLE in Google Chrome prior to 148.0.7778.216 allowed a remote attacker who had compromised the renderer process toEPSS 0.3%CVE-2025-3159MEDIUMOpen Asset Import Library Assimp ASE File ASEParser.cpp ParseLV4MeshBonesVertices heap-based overflowEPSS 0.3%CVE-2026-19138HIGHHeap buffer overflow in CrashReporting in Google Chrome prior to 151.0.7922.109 allowed a remote attacker who had compromised the renderer pEPSS 0.3%CVE-2025-2497HIGHDWG File Parsing Stack-Based Buffer VulnerabilityEPSS 0.3%CVE-2026-58379HIGHGimp: gimp: heap buffer overflow in read_channel_data()EPSS 0.3%CVE-2025-59504HIGHAzure Monitor Agent Remote Code Execution VulnerabilityEPSS 0.3%CVE-2026-42046HIGHlibcaca: Heap OOB write in canvas import functions caused by int overflowEPSS 0.3%