Fallos del tipo CWE-122

3213 resultados

Estouro de heap

É quando o código escreve dados além dos limites de um buffer alocado no heap (memória dinâmica), sobrescrevendo dados de outras estruturas adjacentes. Esse estouro pode corromper metadados do heap, variáveis vizinhas ou objetos do programa, permitindo execução de código arbitrário ou negação de serviço.

Ejemplo

Um servidor web recebe uma string de tamanho arbitrário e a copia para um buffer de 256 bytes sem validar o comprimento (ex: strcpy em C). Se o atacante enviar 500 bytes, o restante escreve além da zona alocada, corrompendo estruturas próximas e potencialmente ganhando controle do fluxo.

Cómo mitigar

Use funções seguras (strncpy, strlcpy, snprintf em C) que respeitam limites de tamanho; valide e sanitize entrada do usuário antes de copiar; ative proteções do SO (ASLR, DEP/NX); use linguagens de memória segura quando possível; aplique verificações de limites em loops de cópia.

CVE-2024-27374MEDIUMAn issue was discovered in Samsung Mobile Processor Exynos 980, Exynos 850, Exynos 1280, Exynos 1380, and Exynos 1330. In the function slsi_EPSS 0.2%CVE-2022-38701MEDIUMIPC in communication subsystem has a heap overflow vulnerability. Local attackers can trigger a heap overflow and get network sensitive information.EPSS 0.2%CVE-2026-6846HIGHBinutils: binutils: arbitrary code execution via malformed xcoff object file processingEPSS 0.2%CVE-2026-43906HIGHOpenImageIO: HEIF Heap overflowEPSS 0.2%CVE-2026-2646MEDIUMHeap buffer overflow in session parsing with wolfSSL_d2i_SSL_SESSION() functionEPSS 0.2%CVE-2024-11608HIGHA maliciously crafted SKP file, when linked or imported into Autodesk Revit, can be used to cause a Heap-based Overflow. A malicious actor cEPSS 0.2%CVE-2025-12495HIGHAcademy Software Foundation OpenEXR EXR File Parsing Heap-based Buffer Overflow Remote Code Execution VulnerabilityEPSS 0.2%CVE-2026-18497HIGHThe nothings stb TrueType library contains a heap buffer overflow vulnerabilityEPSS 0.2%CVE-2023-31031MEDIUMCVEEPSS 0.2%CVE-2026-21678HIGHiccDEV has heap-buffer-overflow vulnerability on IccTagXml()EPSS 0.2%CVE-2026-68513HIGHOpenEXR: Heap buffer overflow in PyOpenEXR from literal/prefixed RGB channel name collisionEPSS 0.2%CVE-2025-63927MEDIUMA heap-use-after-free vulnerability exists in airpig2011 IEC104 thru Commit be6d841 (2019-07-08). During multi-threaded client execution, thEPSS 0.2%CVE-2026-28421MEDIUMVim has a heap-buffer-overflow and a segmentation faultEPSS 0.2%CVE-2026-15170MEDIUMHeap-based Buffer Overflow in WiresharkEPSS 0.2%CVE-2025-12840HIGHAcademy Software Foundation OpenEXR EXR File Parsing Heap-based Buffer Overflow Remote Code Execution VulnerabilityEPSS 0.2%CVE-2025-12839HIGHAcademy Software Foundation OpenEXR EXR File Parsing Heap-based Buffer Overflow Remote Code Execution VulnerabilityEPSS 0.2%CVE-2025-5915MEDIUMLibarchive: heap buffer over read in copy_from_lzss_window() at archive_read_support_format_rar.cEPSS 0.2%CVE-2026-61721HIGHFluidSynth: Heap-based buffer overrun for DLS samplesEPSS 0.2%CVE-2026-30979HIGHiccDEV has a heap-based buffer overflow in CIccCalculatorFunc::InitSelectOp()EPSS 0.2%CVE-2023-23782HIGHA heap-based buffer overflow in Fortinet FortiWeb version 7.0.0 through 7.0.1, FortiWeb version 6.3.0 through 6.3.19, FortiWeb 6.4 all versiEPSS 0.2%