Weaknesses of type CWE-122

3,195 results

Transbordamento de heap (heap overflow)

Ocorre quando um programa escreve dados além dos limites de um buffer alocado dinamicamente na memória heap, sobrescrevendo dados adjacentes ou metadados do alocador. Isso permite que um atacante corrompa estruturas críticas, execute código arbitrário ou cause travamento da aplicação.

Example

Uma função recebe um tamanho de entrada sem validar e copia para um buffer: `strcpy(heap_buffer, user_input)` sem verificar se user_input cabe. Se o usuário enviar 1000 bytes para um buffer de 256, o overflow sobrescreve estruturas próximas no heap e pode ser explorado para RCE.

How to mitigate

Use funções seguras de cópia (`strncpy`, `strlcpy`), valide e limite o tamanho da entrada antes de copiar, e considere usar linguagens com gerenciamento automático de memória ou ferramentas como AddressSanitizer durante testes para detectar overflows.

CVE-2023-26413HIGHZDI-CAN-20315: Adobe Substance 3D Designer USD File Parsing Heap-based Buffer Overflow Remote Code Execution VulnerabilityEPSS 0.4%CVE-2023-29283HIGHZDI-CAN-20361: Adobe Substance 3D Painter USD File Parsing Heap-based Buffer Overflow Remote Code Execution VulnerabilityEPSS 0.4%CVE-2025-50343CRITICALAn issue was discovered in matio 1.5.28. A heap-based memory corruption can occur in Mat_VarCreateStruct() when the nfields value does not mEPSS 0.4%CVE-2025-59242HIGHWindows Ancillary Function Driver for WinSock Elevation of Privilege VulnerabilityEPSS 0.4%CVE-2023-21594HIGHAdobe InCopy Font Parsing Heap-based Buffer Overflow Remote Code Execution VulnerabilityEPSS 0.4%CVE-2025-29069HIGHA heap buffer overflow vulnerability has been identified in the lcms2-2.16. The vulnerability exists in the UnrollChunkyBytes function in cmEPSS 0.4%CVE-2026-81851MEDIUMFireware OS Heap-Based Buffer Overflow in iked Allows Denial of ServiceEPSS 0.4%CVE-2023-42039HIGHKofax Power PDF PDF File Parsing Heap-based Buffer Overflow Remote Code Execution VulnerabilityEPSS 0.4%CVE-2026-58547MEDIUMWindows Universal Plug and Play (UPnP) Device Host Elevation of Privilege VulnerabilityEPSS 0.4%CVE-2025-27198HIGHPhotoshop Desktop | Heap-based Buffer Overflow (CWE-122)EPSS 0.4%CVE-2026-38754MEDIUMA heap overflow in the ifsbreakup() function (shell/ash.c) of Busybox v1.38.0 allows attackers to cause a Denial of Service (DoS) via supplyEPSS 0.4%CVE-2025-27199HIGHAnimate | Heap-based Buffer Overflow (CWE-122)EPSS 0.4%CVE-2024-49545HIGHInDesign Desktop | Heap-based Buffer Overflow (CWE-122)EPSS 0.4%CVE-2025-67433HIGHA heap buffer overflow in the processRequest function of Open TFTP Server MultiThreaded v1.7 allows attackers to cause a Denial of Service (EPSS 0.4%CVE-2025-27195HIGHMedia Encoder | Heap-based Buffer Overflow (CWE-122)EPSS 0.4%CVE-2023-1448MEDIUMGPAC mpegts.c gf_m2ts_process_sdt heap-based overflowEPSS 0.4%CVE-2026-13072CRITICALMongoDB Improper Input Validation in Compute Mode External Data Processing Leading to Memory CorruptionEPSS 0.4%CVE-2024-24335HIGHA heap buffer overflow occurs in the dfs_v2 romfs filesystem RT-Thread through 5.0.2.EPSS 0.4%CVE-2024-24334HIGHA heap buffer overflow occurs in dfs_v2 dfs_file in RT-Thread through 5.0.2.EPSS 0.4%CVE-2026-48131HIGHVPND IKE Fragment Reassembly - Heap Out-of-Bounds Write via Sequence Number ZeroEPSS 0.4%