Weaknesses of type CWE-122

3,195 results

Transbordamento de heap (heap overflow)

Ocorre quando um programa escreve dados além dos limites de um buffer alocado dinamicamente na memória heap, sobrescrevendo dados adjacentes ou metadados do alocador. Isso permite que um atacante corrompa estruturas críticas, execute código arbitrário ou cause travamento da aplicação.

Example

Uma função recebe um tamanho de entrada sem validar e copia para um buffer: `strcpy(heap_buffer, user_input)` sem verificar se user_input cabe. Se o usuário enviar 1000 bytes para um buffer de 256, o overflow sobrescreve estruturas próximas no heap e pode ser explorado para RCE.

How to mitigate

Use funções seguras de cópia (`strncpy`, `strlcpy`), valide e limite o tamanho da entrada antes de copiar, e considere usar linguagens com gerenciamento automático de memória ou ferramentas como AddressSanitizer durante testes para detectar overflows.

CVE-2023-6992MEDIUMMemory corruption issues is Cloudflare zlib implementationEPSS 0.2%CVE-2025-49560HIGHSubstance3D - Viewer | Heap-based Buffer Overflow (CWE-122)EPSS 0.2%CVE-2025-61838HIGHFormat Plugins | Heap-based Buffer Overflow (CWE-122)EPSS 0.2%CVE-2025-67873MEDIUMCapstone doesn't check Skipdata length, leading to cs_insn.bytes heap buffer overflowEPSS 0.2%CVE-2025-6816MEDIUMHDF5 H5Ofsinfo.c H5O__fsinfo_encode heap-based overflowEPSS 0.2%CVE-2024-29165HIGHHDF5 through 1.14.3 contains a buffer overflow in H5Z__filter_fletcher32, resulting in the corruption of the instruction pointer and causingEPSS 0.2%CVE-2026-11124HIGHInteger overflow in Skia in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to potentially exploit heap corruption via a crafEPSS 0.2%CVE-2026-21357HIGHInDesign Desktop | Heap-based Buffer Overflow (CWE-122)EPSS 0.2%CVE-2023-28527MEDIUMIBM Informix Dynamic Server buffer overflowEPSS 0.2%CVE-2023-3180MEDIUMHeap buffer overflow in virtio_crypto_sym_op_helper()EPSS 0.2%CVE-2025-54630MEDIUM:Vulnerability of insufficient data length verification in the DFA module. Impact: Successful exploitation of this vulnerability may affect EPSS 0.2%CVE-2023-28526MEDIUMIBM Informix Dynamic Server buffer overflowEPSS 0.2%CVE-2026-3281MEDIUMlibvips bandrank.c vips_bandrank_build heap-based overflowEPSS 0.2%CVE-2025-1651HIGHMODEL File Parsing Heap-Based Buffer Overflow VulnerabilityEPSS 0.2%CVE-2026-3147MEDIUMlibvips csvload.c vips_foreign_load_csv_build heap-based overflowEPSS 0.2%CVE-2026-8212MEDIUMOSGeo gdal SWapi.c SWSDfldsrch heap-based overflowEPSS 0.2%CVE-2026-70638HIGHllama.cpp b1886–b7445 Integer Overflow via new_1batch() in llama-android.cppEPSS 0.2%CVE-2026-2653MEDIUMadmesh normals.c stl_check_normal_vector heap-based overflowEPSS 0.2%CVE-2025-1429HIGHMODEL File Parsing Heap-Based Buffer Overflow VulnerabilityEPSS 0.2%CVE-2026-8213MEDIUMOSGeo gdal Grid File GDapi.c GDSDfldsrch heap-based overflowEPSS 0.2%