Fallos del tipo CWE-122

3213 resultados

Estouro de heap

É quando o código escreve dados além dos limites de um buffer alocado no heap (memória dinâmica), sobrescrevendo dados de outras estruturas adjacentes. Esse estouro pode corromper metadados do heap, variáveis vizinhas ou objetos do programa, permitindo execução de código arbitrário ou negação de serviço.

Ejemplo

Um servidor web recebe uma string de tamanho arbitrário e a copia para um buffer de 256 bytes sem validar o comprimento (ex: strcpy em C). Se o atacante enviar 500 bytes, o restante escreve além da zona alocada, corrompendo estruturas próximas e potencialmente ganhando controle do fluxo.

Cómo mitigar

Use funções seguras (strncpy, strlcpy, snprintf em C) que respeitam limites de tamanho; valide e sanitize entrada do usuário antes de copiar; ative proteções do SO (ASLR, DEP/NX); use linguagens de memória segura quando possível; aplique verificações de limites em loops de cópia.

CVE-2025-23308LOWNVIDIA CUDA Toolkit for all platforms contains a vulnerability in nvdisasm where an attacker may cause a heap-based buffer overflow by gettiEPSS 0.2%CVE-2026-8552MEDIUMHeap buffer overflow in GPU in Google Chrome on Android prior to 148.0.7778.168 allowed a remote attacker to perform an out of bounds memoryEPSS 0.2%CVE-2025-11277MEDIUMOpen Asset Import Library Assimp Q3DLoader.cpp InternReadFile heap-based overflowEPSS 0.2%CVE-2026-72927MEDIUMWinsock Elevation of Privilege VulnerabilityEPSS 0.2%CVE-2025-43582HIGHSubstance3D - Viewer | Heap-based Buffer Overflow (CWE-122)EPSS 0.2%CVE-2025-7207MEDIUMmruby nregs codegen.c scope_new heap-based overflowEPSS 0.2%CVE-2026-24829MEDIUMOut-of-bounds write in is-EngineEPSS 0.2%CVE-2025-11014MEDIUMOGRECave Ogre Image OgreSTBICodec.cpp encode heap-based overflowEPSS 0.2%CVE-2025-50360HIGHA heap buffer overflow in compiler.c and compiler.h in Pepper language 0.1.1commit 961a5d9988c5986d563310275adad3fd181b2bb7. Malicious execuEPSS 0.2%CVE-2025-50054MEDIUMBuffer overflow in OpenVPN ovpn-dco-win version 1.3.0 and earlier and version 2.5.8 and earlier allows a local user process to send a too laEPSS 0.2%CVE-2023-31276HIGHHeap-based buffer overflow in BMC Firmware for the Intel(R) Server Board S2600WF, Intel(R) Server Board S2600ST, Intel(R) Server Board S2600EPSS 0.2%CVE-2020-13600HIGHMalformed SPI in response for eswifi can corrupt kernel memoryEPSS 0.2%CVE-2026-21357HIGHInDesign Desktop | Heap-based Buffer Overflow (CWE-122)EPSS 0.2%CVE-2024-32619HIGHHDF5 Library through 1.14.3 contains a heap-based buffer overflow in H5T_copy_reopen in H5T.c, resulting in the corruption of the instructioEPSS 0.2%CVE-2025-54278MEDIUMBridge | Heap-based Buffer Overflow (CWE-122)EPSS 0.2%CVE-2024-34408MEDIUMTencent libpag through 4.3.51 has an integer overflow in DecodeStream::checkEndOfFile() in codec/utils/DecodeStream.cpp via a crafted PAG (PEPSS 0.2%CVE-2024-33489HIGHA vulnerability has been identified in Solid Edge (All versions < V224.0 Update 5). The affected application is vulnerable to heap-based bufEPSS 0.2%CVE-2024-32618HIGHHDF5 Library through 1.14.3 contains a heap-based buffer overflow in H5T__get_native_type in H5Tnative.c, resulting in the corruption of theEPSS 0.2%CVE-2025-22880HIGHHeap-based Buffer Overflow in CNCSoft-G2EPSS 0.2%CVE-2025-11495MEDIUMGNU Binutils Linker elf64-x86-64.c elf_x86_64_relocate_section heap-based overflowEPSS 0.2%