Weaknesses of type CWE-122

3,195 results

Transbordamento de heap (heap overflow)

Ocorre quando um programa escreve dados além dos limites de um buffer alocado dinamicamente na memória heap, sobrescrevendo dados adjacentes ou metadados do alocador. Isso permite que um atacante corrompa estruturas críticas, execute código arbitrário ou cause travamento da aplicação.

Example

Uma função recebe um tamanho de entrada sem validar e copia para um buffer: `strcpy(heap_buffer, user_input)` sem verificar se user_input cabe. Se o usuário enviar 1000 bytes para um buffer de 256, o overflow sobrescreve estruturas próximas no heap e pode ser explorado para RCE.

How to mitigate

Use funções seguras de cópia (`strncpy`, `strlcpy`), valide e limite o tamanho da entrada antes de copiar, e considere usar linguagens com gerenciamento automático de memória ou ferramentas como AddressSanitizer durante testes para detectar overflows.

CVE-2026-82820MEDIUMFLVMeta AMF String Processing amf.c amf_string_new heap-based overflowEPSS 0.6%CVE-2024-30066MEDIUMWinlogon Elevation of Privilege VulnerabilityEPSS 0.6%CVE-2024-39825HIGHZoom Workplace Apps and Rooms Clients - Buffer OverflowEPSS 0.6%CVE-2024-6383MEDIUMMongoDB C Driver bson_string_append may be vulnerable to a buffer overflowEPSS 0.6%CVE-2026-4153HIGHGIMP PSP File Parsing Heap-based Buffer Overflow Remote Code Execution VulnerabilityEPSS 0.6%CVE-2026-2447HIGHHeap buffer overflow in libvpxEPSS 0.6%CVE-2024-6994HIGHHeap buffer overflow in Layout in Google Chrome prior to 127.0.6533.72 allowed a remote attacker to potentially exploit heap corruption via EPSS 0.6%CVE-2024-48075MEDIUMA Heap buffer overflow in the server-site handshake implementation in Real Time Logic SharkSSL from 09/09/24 and earlier allows a remote attEPSS 0.6%CVE-2023-28269MEDIUMWindows Boot Manager Security Feature Bypass VulnerabilityEPSS 0.6%CVE-2026-81477HIGHDell OpenManage Server Administrator, versions prior to 11.1.0.3, contains a Heap-based Buffer Overflow vulnerability. A high privileged attEPSS 0.6%CVE-2026-29004HIGHBusyBox DHCPv6 Client Heap Buffer Overflow via DNS_SERVERSEPSS 0.6%CVE-2026-63633HIGHFreeRDP: Heap buffer overflow in Opus audio decode (`freerdp_dsp_decode_opus` resizes the wrong stream) — server→clientEPSS 0.6%CVE-2026-55194HIGHFreeRDPHeap-buffer-overflow write in TS Gateway RPC RESPONSE reassembly due to alloc_hint capacity mismatchEPSS 0.6%CVE-2024-37280MEDIUMElasticsearch StackOverflow vulnerabilityEPSS 0.6%CVE-2024-5160HIGHHeap buffer overflow in Dawn in Google Chrome prior to 125.0.6422.76 allowed a remote attacker to perform an out of bounds memory write via EPSS 0.6%CVE-2026-56003HIGHlibXfont2 computeProps Property Buffer Heap Buffer OverflowEPSS 0.6%CVE-2024-49072HIGHWindows Task Scheduler Elevation of Privilege VulnerabilityEPSS 0.6%CVE-2026-56001HIGHlibXfont2 BitmapScaleBitmaps Integer Overflow Heap Buffer OverflowEPSS 0.6%CVE-2026-2049HIGHGIMP HDR File Parsing Heap-based Buffer Overflow Remote Code Execution VulnerabilityEPSS 0.6%CVE-2024-21354HIGHMicrosoft Message Queuing (MSMQ) Elevation of Privilege VulnerabilityEPSS 0.6%