Weaknesses of type CWE-122

3,195 results

Transbordamento de heap (heap overflow)

Ocorre quando um programa escreve dados além dos limites de um buffer alocado dinamicamente na memória heap, sobrescrevendo dados adjacentes ou metadados do alocador. Isso permite que um atacante corrompa estruturas críticas, execute código arbitrário ou cause travamento da aplicação.

Example

Uma função recebe um tamanho de entrada sem validar e copia para um buffer: `strcpy(heap_buffer, user_input)` sem verificar se user_input cabe. Se o usuário enviar 1000 bytes para um buffer de 256, o overflow sobrescreve estruturas próximas no heap e pode ser explorado para RCE.

How to mitigate

Use funções seguras de cópia (`strncpy`, `strlcpy`), valide e limite o tamanho da entrada antes de copiar, e considere usar linguagens com gerenciamento automático de memória ou ferramentas como AddressSanitizer durante testes para detectar overflows.

CVE-2022-38404HIGHAdobe InCopy SVG File Parsing Heap-based Buffer Overflow Remote Code Execution VulnerabilityEPSS 0.6%CVE-2026-19968MEDIUMOpen Asset Import Library Assimp 3DGS MDL7 Model LWOLoader.h ReadFaces_3DGS_MDL7 heap-based overflowEPSS 0.6%CVE-2025-40928HIGHJSON::XS before version 4.04 for Perl has an integer buffer overflow causing a segfault when parsing crafted JSON, enabling denial-of-service attacks or other unspecified impactEPSS 0.6%CVE-2024-27245MEDIUMZoom Workplace Apps and SDKs - Buffer OverflowEPSS 0.6%CVE-2020-10928HIGHThis vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR R6700 V1.0.4.84_10.0.58 EPSS 0.6%CVE-2024-29013MEDIUMHeap-based buffer overflow vulnerability in the SonicOS SSL-VPN allows an authenticated remote attacker to cause Denial of Service (DoS) viaEPSS 0.6%CVE-2026-8987CRITICALAuthenticated Heap OverflowEPSS 0.6%CVE-2026-31970HIGHHTSlib BGZF index file reader has a heap buffer overflowEPSS 0.6%CVE-2025-20672CRITICALIn Bluetooth driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilEPSS 0.6%CVE-2025-0999HIGHHeap buffer overflow in V8 in Google Chrome prior to 133.0.6943.126 allowed a remote attacker to potentially exploit heap corruption via a cEPSS 0.6%CVE-2025-29979HIGHMicrosoft Excel Remote Code Execution VulnerabilityEPSS 0.6%CVE-2022-38432HIGHAdobe Photoshop SVG File Parsing Heap-based Buffer Overflow Remote Code Execution VulnerabilityEPSS 0.6%CVE-2022-35708HIGHAdobe Bridge SGI File Parsing Heap-based Buffer Overflow Remote Code Execution VulnerabilityEPSS 0.6%CVE-2024-32624HIGHHDF5 Library through 1.14.3 contains a heap-based buffer overflow in H5T__ref_mem_setnull in H5Tref.c (called from H5T__conv_ref in H5Tconv.EPSS 0.6%CVE-2026-2047HIGHGIMP ICNS File Parsing Heap-based Buffer Overflow Remote Code Execution VulnerabilityEPSS 0.6%CVE-2026-46520HIGHImageMagick: Heap Buffer Over-Write in IPL decoder when reading multiple images of different dimensionsEPSS 0.6%CVE-2023-46256MEDIUMPX4-Autopilot Heap Buffer Overflow BugEPSS 0.6%CVE-2022-2809HIGHUnauthenticated out of bounds heap write in bmcwebEPSS 0.6%CVE-2025-26666HIGHWindows Media Remote Code Execution VulnerabilityEPSS 0.6%CVE-2025-26674HIGHWindows Media Remote Code Execution VulnerabilityEPSS 0.6%