Weaknesses of type CWE-122

3,195 results

Transbordamento de heap (heap overflow)

Ocorre quando um programa escreve dados além dos limites de um buffer alocado dinamicamente na memória heap, sobrescrevendo dados adjacentes ou metadados do alocador. Isso permite que um atacante corrompa estruturas críticas, execute código arbitrário ou cause travamento da aplicação.

Example

Uma função recebe um tamanho de entrada sem validar e copia para um buffer: `strcpy(heap_buffer, user_input)` sem verificar se user_input cabe. Se o usuário enviar 1000 bytes para um buffer de 256, o overflow sobrescreve estruturas próximas no heap e pode ser explorado para RCE.

How to mitigate

Use funções seguras de cópia (`strncpy`, `strlcpy`), valide e limite o tamanho da entrada antes de copiar, e considere usar linguagens com gerenciamento automático de memória ou ferramentas como AddressSanitizer durante testes para detectar overflows.

CVE-2026-66810MEDIUMMicrosoft Office Word Information Disclosure VulnerabilityEPSS 0.4%CVE-2023-28798MEDIUMOut-of-bounds write to heap in pacparserEPSS 0.4%CVE-2026-28519HIGHarduino-TuyaOpen DnsServer Heap-Based Buffer Overflow Remote Code ExecutionEPSS 0.4%CVE-2026-20452HIGHIn wlan AP driver, there is a possible memory corruption due to a heap buffer overflow. This could lead to remote (proximal/adjacent) code eEPSS 0.4%CVE-2026-38427HIGHAn issue in fetch_jpg() in xdrv_10_scripter.ino in Tasmota through 15.3.0.3 allows a remote attacker to cause heap buffer overflow. The ContEPSS 0.4%CVE-2026-21246HIGHWindows Graphics Component Elevation of Privilege VulnerabilityEPSS 0.4%CVE-2026-12912HIGHLibtiff: libtiff: heap-based buffer overflow via crafted pixarlog-compressed tiff imageEPSS 0.4%CVE-2026-21239HIGHWindows Kernel Elevation of Privilege VulnerabilityEPSS 0.4%CVE-2026-21245HIGHWindows Kernel Elevation of Privilege VulnerabilityEPSS 0.4%CVE-2025-9951HIGHRemote code execution via Heap Buffer Overflow in FFmpeg JPEG2000EPSS 0.4%CVE-2024-6258MEDIUMBT: Missing length checks of net_buf in rfcomm_handle_dataEPSS 0.4%CVE-2026-21236HIGHWindows Ancillary Function Driver for WinSock Elevation of Privilege VulnerabilityEPSS 0.4%CVE-2023-38071HIGHA vulnerability has been identified in JT2Go (All versions < V14.3.0.1), Teamcenter Visualization V13.3 (All versions < V13.3.0.12), TeamcenEPSS 0.4%CVE-2025-62689HIGHNULL pointer dereference vulnerability exists in GNU libmicrohttpd v1.0.2 and earlier. The vulnerability was fixed in commit ff13abc on the EPSS 0.4%CVE-2026-61368MEDIUMWindows Hyper-V Information Disclosure VulnerabilityEPSS 0.4%CVE-2023-0819HIGHHeap-based Buffer Overflow in gpac/gpacEPSS 0.4%CVE-2026-24288MEDIUMWindows Mobile Broadband Driver Remote Code Execution VulnerabilityEPSS 0.4%CVE-2026-1861HIGHHeap buffer overflow in libvpx in Google Chrome prior to 144.0.7559.132 allowed a remote attacker to potentially exploit heap corruption viaEPSS 0.4%CVE-2023-35304HIGHWindows Kernel Elevation of Privilege VulnerabilityEPSS 0.4%CVE-2023-35305HIGHWindows Kernel Elevation of Privilege VulnerabilityEPSS 0.4%