Fallos del tipo CWE-122

3213 resultados

Estouro de heap

É quando o código escreve dados além dos limites de um buffer alocado no heap (memória dinâmica), sobrescrevendo dados de outras estruturas adjacentes. Esse estouro pode corromper metadados do heap, variáveis vizinhas ou objetos do programa, permitindo execução de código arbitrário ou negação de serviço.

Ejemplo

Um servidor web recebe uma string de tamanho arbitrário e a copia para um buffer de 256 bytes sem validar o comprimento (ex: strcpy em C). Se o atacante enviar 500 bytes, o restante escreve além da zona alocada, corrompendo estruturas próximas e potencialmente ganhando controle do fluxo.

Cómo mitigar

Use funções seguras (strncpy, strlcpy, snprintf em C) que respeitam limites de tamanho; valide e sanitize entrada do usuário antes de copiar; ative proteções do SO (ASLR, DEP/NX); use linguagens de memória segura quando possível; aplique verificações de limites em loops de cópia.

CVE-2026-24272HIGHNVIDIA TensorRT contains a vulnerability where an attacker might cause an overflow to a heap-based buffer. A successful exploit of this vulnEPSS 0.2%CVE-2022-34400HIGH Dell BIOS contains a heap buffer overflow vulnerability. A local attacker with admin privileges could potentially exploit this vulnerabilitEPSS 0.2%CVE-2025-24477MEDIUMA heap-based buffer overflow vulnerability in Fortinet FortiOS 7.6.0 through 7.6.2, FortiOS 7.4.0 through 7.4.7, FortiOS 7.2.4 through 7.2.1EPSS 0.2%CVE-2025-64524LOWCUPS rastertopclx Filter Vulnerable to Heap Buffer Overflow Leading to Potential Arbitrary Code ExecutionEPSS 0.2%CVE-2025-63701MEDIUMA heap corruption vulnerability exists in the Advantech TP-3250 printer driver's DrvUI_x64_ADVANTECH.dll (v0.3.9200.20789) when DocumentPropEPSS 0.2%CVE-2026-48065MEDIUMpam_usb: Unchecked integer multiplication before xmalloc() in conf.c allows heap-based buffer overflow on 32-bit targetsEPSS 0.2%CVE-2026-63422HIGHOpenImageIO OpenEXR plugin partial edge tile heap out-of-bounds writeEPSS 0.2%CVE-2025-11464HIGHAshlar-Vellum Cobalt CO File Parsing Heap-based Buffer Overflow Remote Code Execution VulnerabilityEPSS 0.2%CVE-2023-40222HIGHAshlar-Vellum Cobalt, Xenon, Argon, Lithium Heap-based Buffer OverflowEPSS 0.2%CVE-2023-49121HIGHA vulnerability has been identified in Solid Edge SE2023 (All versions < V223.0 Update 10). The affected application is vulnerable to heap-bEPSS 0.2%CVE-2024-0156HIGHDell Digital Delivery, versions prior to 5.2.0.0, contain a Buffer Overflow Vulnerability. A local low privileged attacker could potentiallyEPSS 0.2%CVE-2026-2913LOWlibvips source.c vips_source_read_to_memory heap-based overflowEPSS 0.2%CVE-2026-13884HIGHInteger overflow in Chromecast in Google Chrome prior to 150.0.7871.47 allowed a local attacker to execute arbitrary code via malicious netwEPSS 0.2%CVE-2023-49123HIGHA vulnerability has been identified in Solid Edge SE2023 (All versions < V223.0 Update 10). The affected application is vulnerable to heap-bEPSS 0.2%CVE-2026-15028LOWLibarchive: heap overflow oob read while parsing a tar archive contains a pax extended headerEPSS 0.2%CVE-2023-49122HIGHA vulnerability has been identified in Solid Edge SE2023 (All versions < V223.0 Update 10). The affected application is vulnerable to heap-bEPSS 0.2%CVE-2025-12659HIGHHeap-based buffer overflow in Siemens Simcenter FemapEPSS 0.2%CVE-2026-29043MEDIUMHDF5 H5T__ref_mem_setnull Heap Buffer OverflowEPSS 0.2%CVE-2026-81355HIGHVirtual Hard Disk (VHD) Miniport Driver Remote Code Execution VulnerabilityEPSS 0.2%CVE-2026-90556HIGHFreeciv before 3.2.6 Heap Buffer Overflow via worklist_loadEPSS 0.2%