Fallos del tipo CWE-122

3212 resultados

Estouro de heap

É quando o código escreve dados além dos limites de um buffer alocado no heap (memória dinâmica), sobrescrevendo dados de outras estruturas adjacentes. Esse estouro pode corromper metadados do heap, variáveis vizinhas ou objetos do programa, permitindo execução de código arbitrário ou negação de serviço.

Ejemplo

Um servidor web recebe uma string de tamanho arbitrário e a copia para um buffer de 256 bytes sem validar o comprimento (ex: strcpy em C). Se o atacante enviar 500 bytes, o restante escreve além da zona alocada, corrompendo estruturas próximas e potencialmente ganhando controle do fluxo.

Cómo mitigar

Use funções seguras (strncpy, strlcpy, snprintf em C) que respeitam limites de tamanho; valide e sanitize entrada do usuário antes de copiar; ative proteções do SO (ASLR, DEP/NX); use linguagens de memória segura quando possível; aplique verificações de limites em loops de cópia.

CVE-2024-7546HIGHoFono SimToolKit Heap-based Buffer Overflow Privilege Escalation VulnerabilityEPSS 0.3%CVE-2022-36764HIGHHeap Buffer Overflow in Tcg2MeasurePeImageEPSS 0.3%CVE-2025-47815MEDIUMlibpspp-core.a in GNU PSPP through 2.0.1 allows attackers to cause a heap-based buffer overflow in inflate_read (called indirectly from zip_EPSS 0.3%CVE-2026-24852MEDIUMiccDEV has a heap-buffer-overflow in icXmlParseTextString()EPSS 0.3%CVE-2026-21283HIGHBridge | Heap-based Buffer Overflow (CWE-122)EPSS 0.3%CVE-2025-47814MEDIUMlibpspp-core.a in GNU PSPP through 2.0.1 allows attackers to cause a heap-based buffer overflow in inflate_read (called indirectly from spv_EPSS 0.3%CVE-2026-69347HIGHWindows Fast FAT Driver Remote Code Execution VulnerabilityEPSS 0.3%CVE-2026-20766HIGHMilesight Cameras Heap-based Buffer OverflowEPSS 0.3%CVE-2025-31280HIGHA memory corruption issue was addressed with improved validation. This issue is fixed in macOS Sequoia 15.6. Processing a maliciously crafteEPSS 0.3%CVE-2023-21733HIGHWindows Bind Filter Driver Elevation of Privilege VulnerabilityEPSS 0.3%CVE-2025-55648MEDIUMA heap buffer overflow in the gf_opus_parse_packet_header function (media_tools/av_parsers.c) of GPAC MP4Box v2.4 allows attackers to cause EPSS 0.3%CVE-2023-28523HIGHIBM Informix Dynamic Server buffer overflowEPSS 0.3%CVE-2025-8879HIGHHeap buffer overflow in libaom in Google Chrome prior to 139.0.7258.127 allowed a remote attacker to potentially exploit heap corruption viaEPSS 0.3%CVE-2025-55645MEDIUMA heap buffer overflow in the gf_cenc_set_pssh function (isomedia/drm_sample.c) of GPAC MP4Box v2.4 allows attackers to cause a Denial of SeEPSS 0.3%CVE-2026-0132HIGHIn Modem, there is a possible out of bounds write due to a heap buffer overflow. This could lead to remote code execution with no additionalEPSS 0.3%CVE-2026-0149HIGHIn RtpSession::rtpSendRtcpPacket, there is a possible OOB write due to a heap buffer overflow. This could lead to remote code execution withEPSS 0.3%CVE-2026-0200HIGHIn Cellular Modem, there is a possible out-of-bounds write due to a heap buffer overflow. This could lead to remote escalation of privilege EPSS 0.3%CVE-2022-43655HIGHBentley View FBX File Parsing Heap-based Buffer Overflow Remote Code Execution VulnerabilityEPSS 0.3%CVE-2026-1283HIGHHeap-based Buffer Overflow vulnerability affecting the EPRT file reading procedure in SOLIDWORKS eDrawings from Release SOLIDWORKS Desktop 2025 through Release SOLIDWORKS Desktop 2026EPSS 0.3%CVE-2025-5517MEDIUMHeap Memory Corruption VulnerabilityEPSS 0.3%