Fallos del tipo CWE-122

3210 resultados

Estouro de heap

É quando o código escreve dados além dos limites de um buffer alocado no heap (memória dinâmica), sobrescrevendo dados de outras estruturas adjacentes. Esse estouro pode corromper metadados do heap, variáveis vizinhas ou objetos do programa, permitindo execução de código arbitrário ou negação de serviço.

Ejemplo

Um servidor web recebe uma string de tamanho arbitrário e a copia para um buffer de 256 bytes sem validar o comprimento (ex: strcpy em C). Se o atacante enviar 500 bytes, o restante escreve além da zona alocada, corrompendo estruturas próximas e potencialmente ganhando controle do fluxo.

Cómo mitigar

Use funções seguras (strncpy, strlcpy, snprintf em C) que respeitam limites de tamanho; valide e sanitize entrada do usuário antes de copiar; ative proteções do SO (ASLR, DEP/NX); use linguagens de memória segura quando possível; aplique verificações de limites em loops de cópia.

CVE-2026-81354HIGHWindows Hello Elevation of Privilege VulnerabilityEPSS 0.3%CVE-2026-62881MEDIUMWindows DNS Elevation of Privilege VulnerabilityEPSS 0.3%CVE-2026-62883MEDIUMWindows DNS Elevation of Privilege VulnerabilityEPSS 0.3%CVE-2026-65797MEDIUMWindows DNS Elevation of Privilege VulnerabilityEPSS 0.3%CVE-2026-62769MEDIUMWindows DNS Elevation of Privilege VulnerabilityEPSS 0.3%CVE-2026-72962HIGHWindows USB Video Driver Elevation of Privilege VulnerabilityEPSS 0.3%CVE-2025-48592MEDIUMIn initDecoder of C2SoftDav1dDec.cpp, there is a possible out of bounds read due to a heap buffer overflow. This could lead to remote informEPSS 0.3%CVE-2026-9940HIGHHeap buffer overflow in ANGLE in Google Chrome prior to 148.0.7778.216 allowed a remote attacker to potentially exploit heap corruption via EPSS 0.3%CVE-2026-11375HIGHIBM MQ queue manager is vulnerable to remote code executionEPSS 0.3%CVE-2026-35199MEDIUMSymCrypt SymCryptXmssSign function - Heap overflow via 64->32-bit leaf-count truncationEPSS 0.3%CVE-2025-22920MEDIUMA heap buffer overflow vulnerability in FFmpeg before commit 4bf784c allows attackers to trigger a memory corruption via supplying a craftedEPSS 0.3%CVE-2025-20685HIGHIn wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote (proximal/adjacent) cEPSS 0.3%CVE-2026-7339HIGHHeap buffer overflow in WebRTC in Google Chrome prior to 147.0.7727.138 allowed a remote attacker to potentially exploit heap corruption viaEPSS 0.3%CVE-2026-8531HIGHHeap buffer overflow in WebML in Google Chrome on Windows prior to 148.0.7778.168 allowed a remote attacker to potentially exploit heap corrEPSS 0.3%CVE-2025-20686HIGHIn wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote (proximal/adjacent) cEPSS 0.3%CVE-2025-21123HIGHInDesign Desktop | Heap-based Buffer Overflow (CWE-122)EPSS 0.3%CVE-2026-15123HIGHInappropriate implementation in DOM in Google Chrome prior to 150.0.7871.115 allowed a remote attacker to potentially exploit heap corruptioEPSS 0.3%CVE-2026-14415HIGHInappropriate implementation in V8 in Google Chrome prior to 150.0.7871.46 allowed a remote attacker who convinced a user to engage in speciEPSS 0.3%CVE-2026-5653MEDIUMHeap-based Buffer Overflow in WiresharkEPSS 0.3%CVE-2026-13835HIGHInappropriate implementation in XML in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to potentially exploit heap corruptionEPSS 0.3%