Fallos del tipo CWE-122

3213 resultados

Estouro de heap

É quando o código escreve dados além dos limites de um buffer alocado no heap (memória dinâmica), sobrescrevendo dados de outras estruturas adjacentes. Esse estouro pode corromper metadados do heap, variáveis vizinhas ou objetos do programa, permitindo execução de código arbitrário ou negação de serviço.

Ejemplo

Um servidor web recebe uma string de tamanho arbitrário e a copia para um buffer de 256 bytes sem validar o comprimento (ex: strcpy em C). Se o atacante enviar 500 bytes, o restante escreve além da zona alocada, corrompendo estruturas próximas e potencialmente ganhando controle do fluxo.

Cómo mitigar

Use funções seguras (strncpy, strlcpy, snprintf em C) que respeitam limites de tamanho; valide e sanitize entrada do usuário antes de copiar; ative proteções do SO (ASLR, DEP/NX); use linguagens de memória segura quando possível; aplique verificações de limites em loops de cópia.

CVE-2026-3994MEDIUMrui314 mold Object File input-files.cc initialize_sections heap-based overflowEPSS 0.2%CVE-2026-19206MEDIUMMZ Automation libiec61850 ASDU Element sv_subscriber.c SVReceiver_stopThreadless heap-based overflowEPSS 0.2%CVE-2025-15666MEDIUMOpen Asset Import Library Assimp Model File SceneCombiner.cpp Copy heap-based overflowEPSS 0.2%CVE-2026-5236MEDIUMAxiomatic Bento4 DSI v1 Ap4Dac4Atom.cpp SkipBits heap-based overflowEPSS 0.2%CVE-2026-5235MEDIUMAxiomatic Bento4 MP4 File Ap4Dac4Atom.cpp ReadCache heap-based overflowEPSS 0.2%CVE-2026-3195HIGHQemu-kvm: virtio-snd: heap buffer overflow in virtio_snd_pcm_in_cb (incomplete fix for cve-2024-7730)EPSS 0.2%CVE-2026-77396MEDIUMPJSIP: Heap buffer overflow in the AVI parserEPSS 0.2%CVE-2025-60468MEDIUMGPAC Multimedia Open Source Project GPAC Project/MP4Box 2.5-DEV-rev1593-gfe88c3545-master is affected by: Buffer Overflow. The impact is: caEPSS 0.2%CVE-2026-5185MEDIUMNothings stb_image Multi-frame GIF File stb_image.h stbi__gif_load_next heap-based overflowEPSS 0.2%CVE-2024-52059MEDIUMBuffer Copy without Checking Size of Input ('Classic Buffer Overflow'), Heap-based Buffer Overflow, Integer Overflow or Wraparound vulnerability in RTI Connext Professional (Security Plugins) allows Overflow Variables and Tags.EPSS 0.2%CVE-2025-57107HIGHKitware VTK (Visualization Toolkit) through 9.5.0 contains a heap buffer overflow vulnerability in vtkGLTFDocumentLoader. When processing spEPSS 0.2%CVE-2026-30982MEDIUMiccDEV has a heap out-of-bounds read in CIccPcsXform::pushXYZConvert()EPSS 0.2%CVE-2023-20029MEDIUMCisco IOS XE Software Privilege Escalation VulnerabilityEPSS 0.2%CVE-2025-70310MEDIUMA heap overflow in the vorbis_to_intern() function of GPAC v2.4.0 allows attackers to cause a Denial of Service (DoS) via a crafted .ogg filEPSS 0.2%CVE-2025-52584HIGHAshlar-Vellum Cobalt, Xenon, Argon, Lithium, Cobalt Share Heap-based Buffer OverflowEPSS 0.2%CVE-2026-28662HIGHIn p2p_process_prov_disc_bootstrap_req of p2p_pd.c, there is a possible out of bounds write due to a heap buffer overflow. This could lead tEPSS 0.2%CVE-2025-46269HIGHAshlar-Vellum Cobalt, Xenon, Argon, Lithium, Cobalt Share Heap-based Buffer OverflowEPSS 0.2%CVE-2026-56967HIGHIn Cellular Modem, there is a possible out-of-bounds write due to a heap buffer overflow. This could lead to remote (proximal/adjacent) codeEPSS 0.2%CVE-2026-58097HIGHppp(8): missing length validation in mp_SetEnddisc()EPSS 0.2%CVE-2025-49850HIGHOut-of-bounds Read in Write in LS Electric GMWin 4EPSS 0.2%