Weaknesses of type CWE-122

3,195 results

Transbordamento de heap (heap overflow)

Ocorre quando um programa escreve dados além dos limites de um buffer alocado dinamicamente na memória heap, sobrescrevendo dados adjacentes ou metadados do alocador. Isso permite que um atacante corrompa estruturas críticas, execute código arbitrário ou cause travamento da aplicação.

Example

Uma função recebe um tamanho de entrada sem validar e copia para um buffer: `strcpy(heap_buffer, user_input)` sem verificar se user_input cabe. Se o usuário enviar 1000 bytes para um buffer de 256, o overflow sobrescreve estruturas próximas no heap e pode ser explorado para RCE.

How to mitigate

Use funções seguras de cópia (`strncpy`, `strlcpy`), valide e limite o tamanho da entrada antes de copiar, e considere usar linguagens com gerenciamento automático de memória ou ferramentas como AddressSanitizer durante testes para detectar overflows.

CVE-2024-42437MEDIUMZoom Workplace Apps, SDKs, Rooms Clients, and Rooms Controllers - Buffer OverflowEPSS 0.6%CVE-2026-87430HIGHBuffer overflow in WebRTC in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to potentially execute arbitrary code inside theEPSS 0.6%CVE-2026-87579HIGHBuffer overflow in WebRTC in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to execute arbitrary code inside the sandbox viaEPSS 0.6%CVE-2026-5858HIGHHeap buffer overflow in WebML in Google Chrome prior to 147.0.7727.55 allowed a remote attacker to execute arbitrary code via a crafted HTMLEPSS 0.6%CVE-2026-9939HIGHHeap buffer overflow in WebCodecs in Google Chrome prior to 148.0.7778.216 allowed a remote attacker to execute arbitrary code inside a sandEPSS 0.6%CVE-2024-50698CRITICALSunGrow WiNet-SV200.001.00.P027 and earlier versions is vulnerable to heap-based buffer overflow due to bounds checks of the MQTT message coEPSS 0.6%CVE-2026-34743LOWXZ Utils: Buffer overflow in lzma_index_append()EPSS 0.6%CVE-2026-78891HIGHBuffer overflow in WebRTC in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code inside the sandbox viaEPSS 0.6%CVE-2026-76034HIGHBuffer overflow in WebGL in Google Chrome prior to 151.0.7922.169 allowed a remote attacker to execute arbitrary code outside the sandbox viEPSS 0.6%CVE-2021-25387CRITICALAn improper input validation vulnerability in sflacfd_get_frm() in libsflacextractor library prior to SMR MAY-2021 Release 1 allows attackerEPSS 0.6%CVE-2025-24995HIGHKernel Streaming WOW Thunk Service Driver Elevation of Privilege VulnerabilityEPSS 0.6%CVE-2026-55130HIGHMicrosoft Word Remote Code Execution VulnerabilityEPSS 0.6%CVE-2026-45475HIGHMicrosoft Office Remote Code Execution VulnerabilityEPSS 0.6%CVE-2026-48691HIGHFastNetMon Community Edition through 1.2.9 contains an integer overflow in the BGP AS_PATH attribute encoder. In src/bgp_protocol.hpp, the IEPSS 0.6%CVE-2026-44824HIGHMicrosoft Office Remote Code Execution VulnerabilityEPSS 0.6%CVE-2026-55127HIGHMicrosoft Word Remote Code Execution VulnerabilityEPSS 0.6%CVE-2026-44819HIGHMicrosoft Office Remote Code Execution VulnerabilityEPSS 0.6%CVE-2026-55125HIGHMicrosoft Office Remote Code Execution VulnerabilityEPSS 0.6%CVE-2026-55033HIGHMicrosoft Word Remote Code Execution VulnerabilityEPSS 0.6%CVE-2026-32177HIGH.NET Elevation of Privilege VulnerabilityEPSS 0.6%