Weaknesses of type CWE-122

3,195 results

Transbordamento de heap (heap overflow)

Ocorre quando um programa escreve dados além dos limites de um buffer alocado dinamicamente na memória heap, sobrescrevendo dados adjacentes ou metadados do alocador. Isso permite que um atacante corrompa estruturas críticas, execute código arbitrário ou cause travamento da aplicação.

Example

Uma função recebe um tamanho de entrada sem validar e copia para um buffer: `strcpy(heap_buffer, user_input)` sem verificar se user_input cabe. Se o usuário enviar 1000 bytes para um buffer de 256, o overflow sobrescreve estruturas próximas no heap e pode ser explorado para RCE.

How to mitigate

Use funções seguras de cópia (`strncpy`, `strlcpy`), valide e limite o tamanho da entrada antes de copiar, e considere usar linguagens com gerenciamento automático de memória ou ferramentas como AddressSanitizer durante testes para detectar overflows.

CVE-2025-32318HIGHIn Skia, there is a possible out of bounds write due to a heap buffer overflow. This could lead to remote escalation of privilege with no adEPSS 0.3%CVE-2026-15169MEDIUMHeap-based Buffer Overflow in WiresharkEPSS 0.3%CVE-2024-13051HIGHAshlar-Vellum Graphite VC6 File Parsing Heap-based Buffer Overflow Remote Code Execution VulnerabilityEPSS 0.3%CVE-2026-11822HIGHSQLite before 3.53.2 Memory Corruption in FTS5 ExtensionEPSS 0.3%CVE-2024-7544HIGHoFono SimToolKit Heap-based Buffer Overflow Privilege Escalation VulnerabilityEPSS 0.3%CVE-2025-57807LOWImageMagick BlobStream Forward-Seek Under-AllocationEPSS 0.3%CVE-2024-7543HIGHoFono SimToolKit Heap-based Buffer Overflow Privilege Escalation VulnerabilityEPSS 0.3%CVE-2024-13050HIGHAshlar-Vellum Graphite VC6 File Parsing Heap-based Buffer Overflow Remote Code Execution VulnerabilityEPSS 0.3%CVE-2024-7545HIGHoFono SimToolKit Heap-based Buffer Overflow Privilege Escalation VulnerabilityEPSS 0.3%CVE-2026-88370MEDIUMlibconfini 1.16.4 contains a heap out-of-bounds write condition involving the bundled load_ini_buffer.h utility and strip_ini_cache(). The bEPSS 0.3%CVE-2025-61837HIGHFormat Plugins | Heap-based Buffer Overflow (CWE-122)EPSS 0.3%CVE-2025-15279HIGHFontForge GUtils BMP File Parsing Heap-based Buffer Overflow Remote Code Execution VulnerabilityEPSS 0.3%CVE-2022-36763HIGHHeap Buffer Overflow in Tcg2MeasureGptTableEPSS 0.3%CVE-2025-15277HIGHFontForge GUtils SGI File Parsing Heap-based Buffer Overflow Remote Code Execution VulnerabilityEPSS 0.3%CVE-2024-7546HIGHoFono SimToolKit Heap-based Buffer Overflow Privilege Escalation VulnerabilityEPSS 0.3%CVE-2026-21283HIGHBridge | Heap-based Buffer Overflow (CWE-122)EPSS 0.3%CVE-2026-24852MEDIUMiccDEV has a heap-buffer-overflow in icXmlParseTextString()EPSS 0.3%CVE-2025-47815MEDIUMlibpspp-core.a in GNU PSPP through 2.0.1 allows attackers to cause a heap-based buffer overflow in inflate_read (called indirectly from zip_EPSS 0.3%CVE-2025-47814MEDIUMlibpspp-core.a in GNU PSPP through 2.0.1 allows attackers to cause a heap-based buffer overflow in inflate_read (called indirectly from spv_EPSS 0.3%CVE-2022-36764HIGHHeap Buffer Overflow in Tcg2MeasurePeImageEPSS 0.3%