Weaknesses of type CWE-122

3,195 results

Transbordamento de heap (heap overflow)

Ocorre quando um programa escreve dados além dos limites de um buffer alocado dinamicamente na memória heap, sobrescrevendo dados adjacentes ou metadados do alocador. Isso permite que um atacante corrompa estruturas críticas, execute código arbitrário ou cause travamento da aplicação.

Example

Uma função recebe um tamanho de entrada sem validar e copia para um buffer: `strcpy(heap_buffer, user_input)` sem verificar se user_input cabe. Se o usuário enviar 1000 bytes para um buffer de 256, o overflow sobrescreve estruturas próximas no heap e pode ser explorado para RCE.

How to mitigate

Use funções seguras de cópia (`strncpy`, `strlcpy`), valide e limite o tamanho da entrada antes de copiar, e considere usar linguagens com gerenciamento automático de memória ou ferramentas como AddressSanitizer durante testes para detectar overflows.

CVE-2026-4152HIGHGIMP JP2 File Parsing Heap-based Buffer Overflow Remote Code Execution VulnerabilityEPSS 0.6%CVE-2023-4738HIGHHeap-based Buffer Overflow in vim/vimEPSS 0.6%CVE-2026-91964HIGHFreeRDP 2.0.0 through 3.30.0 Heap Buffer Overflow via RoutingTokenEPSS 0.6%CVE-2026-32961MEDIUMSD-330AC and AMC Manager provided by silex technology, Inc. contain a heap-based buffer overflow vulnerability in packet data processing of EPSS 0.6%CVE-2023-28292HIGHRaw Image Extension Remote Code Execution VulnerabilityEPSS 0.6%CVE-2026-41509MEDIUMInteger underflow in crypto_sign_open() leads to buffer overflowEPSS 0.6%CVE-2025-49730HIGHMicrosoft Windows QoS Scheduler Driver Elevation of Privilege VulnerabilityEPSS 0.6%CVE-2024-26327MEDIUMAn issue was discovered in QEMU 7.1.0 through 8.2.1. register_vfs in hw/pci/pcie_sriov.c mishandles the situation where a guest writes NumVFEPSS 0.6%CVE-2025-27490HIGHWindows Bluetooth Service Elevation of Privilege VulnerabilityEPSS 0.6%CVE-2025-49729HIGHWindows Routing and Remote Access Service (RRAS) Remote Code Execution VulnerabilityEPSS 0.6%CVE-2023-1906MEDIUMA heap-based buffer overflow issue was discovered in ImageMagick's ImportMultiSpectralQuantum() function in MagickCore/quantum-import.c. An EPSS 0.6%CVE-2026-4395LOWHeap-based buffer overflow in wc_ecc_import_x963_ex KCAPI pathEPSS 0.6%CVE-2025-1426HIGHHeap buffer overflow in GPU in Google Chrome on Android prior to 133.0.6943.126 allowed a remote attacker to potentially exploit heap corrupEPSS 0.6%CVE-2026-5264HIGHDTLS 1.3 ACK heap buffer overflowEPSS 0.6%CVE-2026-25794HIGHImageMagick has heap-buffer-overflow via signed integer overflow in `WriteUHDRImage` when writing UHDR images with large dimensionsEPSS 0.6%CVE-2025-0903HIGHPDF-XChange Editor RTF File Parsing Heap-based Buffer Overflow Remote Code Execution VulnerabilityEPSS 0.6%CVE-2025-2337MEDIUMtbeu matio mat.c Mat_VarPrint heap-based overflowEPSS 0.6%CVE-2026-22891CRITICALA heap-based buffer overflow vulnerability exists in the Intan CLP parsing functionality of The Biosig Project libbiosig 3.9.2 and Master BrEPSS 0.6%CVE-2025-7208MEDIUM9fans plan9port x509.c edump heap-based overflowEPSS 0.6%CVE-2026-31962HIGHHTSlib CRAM reader has heap buffer overflow due to improper validation of inputEPSS 0.6%