Fallos del tipo CWE-122

3210 resultados

Estouro de heap

É quando o código escreve dados além dos limites de um buffer alocado no heap (memória dinâmica), sobrescrevendo dados de outras estruturas adjacentes. Esse estouro pode corromper metadados do heap, variáveis vizinhas ou objetos do programa, permitindo execução de código arbitrário ou negação de serviço.

Ejemplo

Um servidor web recebe uma string de tamanho arbitrário e a copia para um buffer de 256 bytes sem validar o comprimento (ex: strcpy em C). Se o atacante enviar 500 bytes, o restante escreve além da zona alocada, corrompendo estruturas próximas e potencialmente ganhando controle do fluxo.

Cómo mitigar

Use funções seguras (strncpy, strlcpy, snprintf em C) que respeitam limites de tamanho; valide e sanitize entrada do usuário antes de copiar; ative proteções do SO (ASLR, DEP/NX); use linguagens de memória segura quando possível; aplique verificações de limites em loops de cópia.

CVE-2023-2763HIGHUse-After-Free, Out-of-bounds Write and Heap-based Buffer Overflow vulnerabilities exist in the DWG and DXF file reading procedure in SOLIDWORKS Desktop from Release SOLIDWORKS 2021 through Release SOLIDWORKS 2023EPSS 0.4%CVE-2022-44910HIGHBinbloom 2.0 was discovered to contain a heap buffer overflow via the read_pointer function at /binbloom-master/src/helpers.c.EPSS 0.4%CVE-2025-1045HIGHLuxion KeyShot Viewer KSP File Parsing Heap-based Buffer Overflow Remote Code Execution VulnerabilityEPSS 0.4%CVE-2025-70122HIGHA heap buffer overflow vulnerability in the UPF component of free5GC v4.0.1 allows remote attackers to cause a denial of service via a craftEPSS 0.4%CVE-2020-25712—A flaw was found in xorg-x11-server before 1.20.10. A heap-buffer overflow in XkbSetDeviceInfo may lead to a privilege escalation vulnerabilEPSS 0.4%CVE-2025-55697HIGHAzure Local Elevation of Privilege VulnerabilityEPSS 0.4%CVE-2024-11511HIGHIrfanView XCF Plugin XCF File Parsing Heap-based Buffer Overflow Remote Code Execution VulnerabilityEPSS 0.4%CVE-2026-10995HIGHHeap buffer overflow in TabStrip in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who convinced a user to engage in specifiEPSS 0.4%CVE-2025-70299MEDIUMA heap overflow in the avi_parse_input_file() function of GPAC v2.4.0 allows attackers to cause a Denial of Service (DoS) via a crafted AVI EPSS 0.4%CVE-2025-14935HIGHNSF Unidata NetCDF-C Dimension Name Heap-based Buffer Overflow Remote Code Execution VulnerabilityEPSS 0.4%CVE-2025-11778CRITICALStack-based buffer overflow vulnreability in Circutor SGE-PLC1000/SGE-PLC50EPSS 0.4%CVE-2026-11884MEDIUM389-ds-base: 389-ds-base: heap buffer overflow in schema objectclass serialization due to missing oc_superior in size calculationEPSS 0.3%CVE-2026-81665HIGHCorosync: corosync: heap-based buffer overflow in totempg assembly buffer during fragmented message reassemblyEPSS 0.3%CVE-2026-62881MEDIUMWindows DNS Elevation of Privilege VulnerabilityEPSS 0.3%CVE-2026-47652HIGHWindows Hyper-V Remote Code Execution VulnerabilityEPSS 0.3%CVE-2026-65797MEDIUMWindows DNS Elevation of Privilege VulnerabilityEPSS 0.3%CVE-2026-72962HIGHWindows USB Video Driver Elevation of Privilege VulnerabilityEPSS 0.3%CVE-2026-81354HIGHWindows Hello Elevation of Privilege VulnerabilityEPSS 0.3%CVE-2026-69820HIGHWindows Hello Elevation of Privilege VulnerabilityEPSS 0.3%CVE-2026-71339MEDIUMWindows Installer Elevation of Privilege VulnerabilityEPSS 0.3%