Fallos del tipo CWE-122

3210 resultados

Estouro de heap

É quando o código escreve dados além dos limites de um buffer alocado no heap (memória dinâmica), sobrescrevendo dados de outras estruturas adjacentes. Esse estouro pode corromper metadados do heap, variáveis vizinhas ou objetos do programa, permitindo execução de código arbitrário ou negação de serviço.

Ejemplo

Um servidor web recebe uma string de tamanho arbitrário e a copia para um buffer de 256 bytes sem validar o comprimento (ex: strcpy em C). Se o atacante enviar 500 bytes, o restante escreve além da zona alocada, corrompendo estruturas próximas e potencialmente ganhando controle do fluxo.

Cómo mitigar

Use funções seguras (strncpy, strlcpy, snprintf em C) que respeitam limites de tamanho; valide e sanitize entrada do usuário antes de copiar; ative proteções do SO (ASLR, DEP/NX); use linguagens de memória segura quando possível; aplique verificações de limites em loops de cópia.

CVE-2026-69571HIGHWindows USB Audio Class driver (usbaudio.sys) Elevation of Privilege VulnerabilityEPSS 0.3%CVE-2026-62890HIGHWindows GDI+ Elevation of Privilege VulnerabilityEPSS 0.3%CVE-2025-66869HIGHBuffer overflow vulnerability in function strcat in asan_interceptors.cpp in libming 0.4.8.EPSS 0.3%CVE-2026-69787HIGHWindows Biometric Service Elevation of Privilege VulnerabilityEPSS 0.3%CVE-2026-62722HIGHMicrosoft Brokering File System Elevation of Privilege VulnerabilityEPSS 0.3%CVE-2026-10993MEDIUMHeap buffer overflow in Skia in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to obtain potentially sensitive information fEPSS 0.3%CVE-2026-69352HIGHWindows Biometric Service Elevation of Privilege VulnerabilityEPSS 0.3%CVE-2026-72944HIGHRole: Windows Fax Service Elevation of Privilege VulnerabilityEPSS 0.3%CVE-2026-69444HIGHMicrosoft Windows Speech Elevation of Privilege VulnerabilityEPSS 0.3%CVE-2026-54109HIGHWindows Resilient File System (ReFS) Remote Code Execution VulnerabilityEPSS 0.3%CVE-2026-62712HIGHWindows Win32k Elevation of Privilege VulnerabilityEPSS 0.3%CVE-2026-78447HIGHWindows Biometric Service Elevation of Privilege VulnerabilityEPSS 0.3%CVE-2026-42896HIGHWindows DWM Core Library Elevation of Privilege VulnerabilityEPSS 0.3%CVE-2026-50327HIGHWindows Media Remote Code Execution VulnerabilityEPSS 0.3%CVE-2026-84000HIGHMicrosoft Graphics Component Remote Code Execution VulnerabilityEPSS 0.3%CVE-2026-68845HIGHWindows Program Compatibility Assistant Service Elevation of Privilege VulnerabilityEPSS 0.3%CVE-2026-69459HIGHWindows Power Dependency Coordinator Elevation of Privilege VulnerabilityEPSS 0.3%CVE-2026-69720HIGHWindows MIDI Service Module Elevation of Privileges VulnerabilityEPSS 0.3%CVE-2026-73024HIGHWindows Services for NFS ONCRPC XDR Driver Elevation of Privilege VulnerabilityEPSS 0.3%CVE-2026-62739HIGHWindows HTTP.sys Elevation of Privilege VulnerabilityEPSS 0.3%