Weaknesses of type CWE-122

3,195 results

Transbordamento de heap (heap overflow)

Ocorre quando um programa escreve dados além dos limites de um buffer alocado dinamicamente na memória heap, sobrescrevendo dados adjacentes ou metadados do alocador. Isso permite que um atacante corrompa estruturas críticas, execute código arbitrário ou cause travamento da aplicação.

Example

Uma função recebe um tamanho de entrada sem validar e copia para um buffer: `strcpy(heap_buffer, user_input)` sem verificar se user_input cabe. Se o usuário enviar 1000 bytes para um buffer de 256, o overflow sobrescreve estruturas próximas no heap e pode ser explorado para RCE.

How to mitigate

Use funções seguras de cópia (`strncpy`, `strlcpy`), valide e limite o tamanho da entrada antes de copiar, e considere usar linguagens com gerenciamento automático de memória ou ferramentas como AddressSanitizer durante testes para detectar overflows.

CVE-2025-40906CRITICALBSON::XS versions 0.8.4 and earlier for Perl includes a bundled libbson 1.1.7, which has several vulnerabilitiesEPSS 0.6%CVE-2026-44799HIGHRemote Desktop Client Remote Code Execution VulnerabilityEPSS 0.6%CVE-2026-77898HIGHMicrosoft Office Remote Code Execution VulnerabilityEPSS 0.6%CVE-2026-42992HIGHRemote Desktop Client Remote Code Execution VulnerabilityEPSS 0.6%CVE-2026-42993HIGHRemote Desktop Client Remote Code Execution VulnerabilityEPSS 0.6%CVE-2024-6259HIGHBT: HCI: adv_ext_report Improper discarding in adv_ext_reportEPSS 0.6%CVE-2022-45188HIGHNetatalk through 3.1.13 has an afp_getappl heap-based buffer overflow resulting in code execution via a crafted .appl file. This provides reEPSS 0.6%CVE-2024-38142HIGHWindows Secure Kernel Mode Elevation of Privilege VulnerabilityEPSS 0.6%CVE-2022-1733MEDIUMHeap-based Buffer Overflow in vim/vimEPSS 0.6%CVE-2024-45421HIGHZoom Apps - Buffer OverflowEPSS 0.6%CVE-2024-7967HIGHHeap buffer overflow in Fonts in Google Chrome prior to 128.0.6613.84 allowed a remote attacker to potentially exploit heap corruption via aEPSS 0.6%CVE-2026-50538HIGHlibvncclient Tight decoder has an attacker-controlled heap out-of-bounds writeEPSS 0.6%CVE-2026-49841CRITICALFreeSWITCH: Pre-authentication heap buffer overflow in `mod_verto` HTTP POST body readEPSS 0.6%CVE-2026-3548HIGHBuffer overflow in CRL number parsing in wolfSSLEPSS 0.6%CVE-2006-10002CRITICALXML::Parser versions through 2.45 for Perl could overflow the pre-allocated buffer size cause a heap corruption (double free or corruption) and crashesEPSS 0.6%CVE-2024-43527HIGHWindows Kernel Elevation of Privilege VulnerabilityEPSS 0.6%CVE-2026-58095HIGHppp(8): incorrect length calculation in mp_Enddisc()EPSS 0.6%CVE-2023-32025HIGHMicrosoft ODBC Driver for SQL Server Remote Code Execution VulnerabilityEPSS 0.6%CVE-2023-32027HIGHMicrosoft ODBC Driver for SQL Server Remote Code Execution VulnerabilityEPSS 0.6%CVE-2026-4152HIGHGIMP JP2 File Parsing Heap-based Buffer Overflow Remote Code Execution VulnerabilityEPSS 0.6%