Fallos del tipo CWE-122

3210 resultados

Estouro de heap

É quando o código escreve dados além dos limites de um buffer alocado no heap (memória dinâmica), sobrescrevendo dados de outras estruturas adjacentes. Esse estouro pode corromper metadados do heap, variáveis vizinhas ou objetos do programa, permitindo execução de código arbitrário ou negação de serviço.

Ejemplo

Um servidor web recebe uma string de tamanho arbitrário e a copia para um buffer de 256 bytes sem validar o comprimento (ex: strcpy em C). Se o atacante enviar 500 bytes, o restante escreve além da zona alocada, corrompendo estruturas próximas e potencialmente ganhando controle do fluxo.

Cómo mitigar

Use funções seguras (strncpy, strlcpy, snprintf em C) que respeitam limites de tamanho; valide e sanitize entrada do usuário antes de copiar; ative proteções do SO (ASLR, DEP/NX); use linguagens de memória segura quando possível; aplique verificações de limites em loops de cópia.

CVE-2026-62735HIGHWindows HTTP.sys Elevation of Privilege VulnerabilityEPSS 0.3%CVE-2026-72953HIGHWindows USB Driver Elevation of Privilege VulnerabilityEPSS 0.3%CVE-2026-69542HIGHWindows Camera Frame Server Monitor Elevation of Privilege VulnerabilityEPSS 0.3%CVE-2026-55999HIGHxorg-server / xwayland glamor font atlas Heap Buffer OverflowEPSS 0.3%CVE-2026-69433HIGHWindows Error Reporting Elevation of Privilege VulnerabilityEPSS 0.3%CVE-2026-72941HIGHWindows Biometric Service Elevation of Privilege VulnerabilityEPSS 0.3%CVE-2026-62700HIGHWindows NTFS Elevation of Privilege VulnerabilityEPSS 0.3%CVE-2026-62732HIGHWindows Telephony Service Elevation of Privilege VulnerabilityEPSS 0.3%CVE-2026-69921HIGHWindows Print Spooler Components Elevation of Privilege VulnerabilityEPSS 0.3%CVE-2026-72957HIGHWindows Deployment Services Remote Code Execution VulnerabilityEPSS 0.3%CVE-2026-69593HIGHWindows Biometric Service Elevation of Privilege VulnerabilityEPSS 0.3%CVE-2026-73007HIGHWindows Biometric Service Elevation of Privilege VulnerabilityEPSS 0.3%CVE-2026-62736HIGHWindows DHCP Client Elevation of Privilege VulnerabilityEPSS 0.3%CVE-2026-56182HIGHWindows NTFS Elevation of Privilege VulnerabilityEPSS 0.3%CVE-2026-83972HIGHWindows Biometric Service Elevation of Privilege VulnerabilityEPSS 0.3%CVE-2026-49800HIGHWindows Web Proxy Auto-Discovery Protocol (WPAD) Elevation of Privilege VulnerabilityEPSS 0.3%CVE-2026-69283HIGHWindows CD-ROM Driver Elevation of Privilege VulnerabilityEPSS 0.3%CVE-2026-83985HIGHWindows Biometric Service Elevation of Privilege VulnerabilityEPSS 0.3%CVE-2026-72990HIGHWindows Biometric Service Elevation of Privilege VulnerabilityEPSS 0.3%CVE-2026-69583HIGHWindows Biometric Service Elevation of Privilege VulnerabilityEPSS 0.3%