Weaknesses of type CWE-122

3,210 results

Transbordamento de heap (heap overflow)

Ocorre quando um programa escreve dados além dos limites de um buffer alocado dinamicamente na memória heap, sobrescrevendo dados adjacentes ou metadados do alocador. Isso permite que um atacante corrompa estruturas críticas, execute código arbitrário ou cause travamento da aplicação.

Example

Uma função recebe um tamanho de entrada sem validar e copia para um buffer: `strcpy(heap_buffer, user_input)` sem verificar se user_input cabe. Se o usuário enviar 1000 bytes para um buffer de 256, o overflow sobrescreve estruturas próximas no heap e pode ser explorado para RCE.

How to mitigate

Use funções seguras de cópia (`strncpy`, `strlcpy`), valide e limite o tamanho da entrada antes de copiar, e considere usar linguagens com gerenciamento automático de memória ou ferramentas como AddressSanitizer durante testes para detectar overflows.

CVE-2026-20480MEDIUMIn Audio HAL, there is a possible out of bounds write due to a heap buffer overflow. This could lead to local denial of service with User exEPSS 0.1%CVE-2026-76917MEDIUMHeap-based Buffer Overflow in WiresharkEPSS 0.1%CVE-2022-39852HIGHA heap-based overflow vulnerability in makeContactAGIF in libagifencoder.quram.so library prior to SMR Oct-2022 Release 1 allows attacker toEPSS 0.1%CVE-2022-26092HIGHImproper boundary check in Quram Agif library prior to SMR Apr-2022 Release 1 allows arbitrary code execution.EPSS 0.1%CVE-2026-12193HIGHVS Revo RevoUninstaller IOCTL RevoDetector.sys IOCtl_Handler heap-based overflowEPSS 0.1%CVE-2026-70654MEDIUMlibvips: A well-crafted PPM image processed via a custom source could lead to possible heap buffer write overflowEPSS 0.1%CVE-2026-30937MEDIUMImageMagick has a heap buffer overflow in WriteXWDImage due to CARD32 arithmetic overflow in bytes_per_line calculationEPSS 0.1%CVE-2026-56135HIGHIn NTFS-3G through 2026.2.25, a heap-based buffer overflow exists in the function build_inherited_id() in libntfs-3g/security.c that allows EPSS 0.1%CVE-2026-6530MEDIUMHeap-based Buffer Overflow in WiresharkEPSS 0.1%CVE-2026-15165MEDIUMHeap-based Buffer Overflow in WiresharkEPSS 0.1%CVE-2026-6529MEDIUMHeap-based Buffer Overflow in WiresharkEPSS 0.1%CVE-2026-42477MEDIUMA heap-based out-of-bounds read vulnerability in RWObj_Reader::read in the OBJ file parser in Open CASCADE Technology (OCCT) V8_0_0_rc5 alloEPSS 0.1%CVE-2026-44636HIGHlibsixel: integer overflow in encoderEPSS 0.1%CVE-2025-5942MEDIUMHeap Overflow in Netskope Endpoint DLP DriverEPSS 0.1%CVE-2025-55286HIGHz2d OOB drawing with new multi-sample anti-aliasing could lead to invalid memory access and corruptionEPSS 0.1%CVE-2025-20735HIGHIn wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilegEPSS 0.1%CVE-2026-76883MEDIUMHeap-based Buffer Overflow in WiresharkEPSS 0.1%CVE-2025-20733HIGHIn wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilegEPSS 0.1%CVE-2026-23719HIGHA vulnerability has been identified in Simcenter Femap (All versions < V2512), Simcenter Nastran (All versions < V2512). The affected applicEPSS 0.1%CVE-2026-76889MEDIUMHeap-based Buffer Overflow in WiresharkEPSS 0.1%