Fallos del tipo CWE-122

3195 resultados

Estouro de heap

É quando o código escreve dados além dos limites de um buffer alocado no heap (memória dinâmica), sobrescrevendo dados de outras estruturas adjacentes. Esse estouro pode corromper metadados do heap, variáveis vizinhas ou objetos do programa, permitindo execução de código arbitrário ou negação de serviço.

Ejemplo

Um servidor web recebe uma string de tamanho arbitrário e a copia para um buffer de 256 bytes sem validar o comprimento (ex: strcpy em C). Se o atacante enviar 500 bytes, o restante escreve além da zona alocada, corrompendo estruturas próximas e potencialmente ganhando controle do fluxo.

Cómo mitigar

Use funções seguras (strncpy, strlcpy, snprintf em C) que respeitam limites de tamanho; valide e sanitize entrada do usuário antes de copiar; ative proteções do SO (ASLR, DEP/NX); use linguagens de memória segura quando possível; aplique verificações de limites em loops de cópia.

CVE-2022-38404HIGHAdobe InCopy SVG File Parsing Heap-based Buffer Overflow Remote Code Execution VulnerabilityEPSS 0.6%CVE-2026-19968MEDIUMOpen Asset Import Library Assimp 3DGS MDL7 Model LWOLoader.h ReadFaces_3DGS_MDL7 heap-based overflowEPSS 0.6%CVE-2025-40928HIGHJSON::XS before version 4.04 for Perl has an integer buffer overflow causing a segfault when parsing crafted JSON, enabling denial-of-service attacks or other unspecified impactEPSS 0.6%CVE-2024-27245MEDIUMZoom Workplace Apps and SDKs - Buffer OverflowEPSS 0.6%CVE-2020-10928HIGHThis vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR R6700 V1.0.4.84_10.0.58 EPSS 0.6%CVE-2024-29013MEDIUMHeap-based buffer overflow vulnerability in the SonicOS SSL-VPN allows an authenticated remote attacker to cause Denial of Service (DoS) viaEPSS 0.6%CVE-2026-8987CRITICALAuthenticated Heap OverflowEPSS 0.6%CVE-2026-31970HIGHHTSlib BGZF index file reader has a heap buffer overflowEPSS 0.6%CVE-2025-20672CRITICALIn Bluetooth driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilEPSS 0.6%CVE-2025-0999HIGHHeap buffer overflow in V8 in Google Chrome prior to 133.0.6943.126 allowed a remote attacker to potentially exploit heap corruption via a cEPSS 0.6%CVE-2025-29979HIGHMicrosoft Excel Remote Code Execution VulnerabilityEPSS 0.6%CVE-2022-38432HIGHAdobe Photoshop SVG File Parsing Heap-based Buffer Overflow Remote Code Execution VulnerabilityEPSS 0.6%CVE-2022-35708HIGHAdobe Bridge SGI File Parsing Heap-based Buffer Overflow Remote Code Execution VulnerabilityEPSS 0.6%CVE-2024-32624HIGHHDF5 Library through 1.14.3 contains a heap-based buffer overflow in H5T__ref_mem_setnull in H5Tref.c (called from H5T__conv_ref in H5Tconv.EPSS 0.6%CVE-2026-2047HIGHGIMP ICNS File Parsing Heap-based Buffer Overflow Remote Code Execution VulnerabilityEPSS 0.6%CVE-2026-46520HIGHImageMagick: Heap Buffer Over-Write in IPL decoder when reading multiple images of different dimensionsEPSS 0.6%CVE-2023-46256MEDIUMPX4-Autopilot Heap Buffer Overflow BugEPSS 0.6%CVE-2022-2809HIGHUnauthenticated out of bounds heap write in bmcwebEPSS 0.6%CVE-2025-26666HIGHWindows Media Remote Code Execution VulnerabilityEPSS 0.6%CVE-2025-26674HIGHWindows Media Remote Code Execution VulnerabilityEPSS 0.6%