Fallos del tipo CWE-122

3195 resultados

Estouro de heap

É quando o código escreve dados além dos limites de um buffer alocado no heap (memória dinâmica), sobrescrevendo dados de outras estruturas adjacentes. Esse estouro pode corromper metadados do heap, variáveis vizinhas ou objetos do programa, permitindo execução de código arbitrário ou negação de serviço.

Ejemplo

Um servidor web recebe uma string de tamanho arbitrário e a copia para um buffer de 256 bytes sem validar o comprimento (ex: strcpy em C). Se o atacante enviar 500 bytes, o restante escreve além da zona alocada, corrompendo estruturas próximas e potencialmente ganhando controle do fluxo.

Cómo mitigar

Use funções seguras (strncpy, strlcpy, snprintf em C) que respeitam limites de tamanho; valide e sanitize entrada do usuário antes de copiar; ative proteções do SO (ASLR, DEP/NX); use linguagens de memória segura quando possível; aplique verificações de limites em loops de cópia.

CVE-2025-40906CRITICALBSON::XS versions 0.8.4 and earlier for Perl includes a bundled libbson 1.1.7, which has several vulnerabilitiesEPSS 0.6%CVE-2026-44799HIGHRemote Desktop Client Remote Code Execution VulnerabilityEPSS 0.6%CVE-2026-77898HIGHMicrosoft Office Remote Code Execution VulnerabilityEPSS 0.6%CVE-2026-42992HIGHRemote Desktop Client Remote Code Execution VulnerabilityEPSS 0.6%CVE-2026-42993HIGHRemote Desktop Client Remote Code Execution VulnerabilityEPSS 0.6%CVE-2024-6259HIGHBT: HCI: adv_ext_report Improper discarding in adv_ext_reportEPSS 0.6%CVE-2022-45188HIGHNetatalk through 3.1.13 has an afp_getappl heap-based buffer overflow resulting in code execution via a crafted .appl file. This provides reEPSS 0.6%CVE-2024-38142HIGHWindows Secure Kernel Mode Elevation of Privilege VulnerabilityEPSS 0.6%CVE-2022-1733MEDIUMHeap-based Buffer Overflow in vim/vimEPSS 0.6%CVE-2024-45421HIGHZoom Apps - Buffer OverflowEPSS 0.6%CVE-2024-7967HIGHHeap buffer overflow in Fonts in Google Chrome prior to 128.0.6613.84 allowed a remote attacker to potentially exploit heap corruption via aEPSS 0.6%CVE-2026-50538HIGHlibvncclient Tight decoder has an attacker-controlled heap out-of-bounds writeEPSS 0.6%CVE-2026-49841CRITICALFreeSWITCH: Pre-authentication heap buffer overflow in `mod_verto` HTTP POST body readEPSS 0.6%CVE-2026-3548HIGHBuffer overflow in CRL number parsing in wolfSSLEPSS 0.6%CVE-2006-10002CRITICALXML::Parser versions through 2.45 for Perl could overflow the pre-allocated buffer size cause a heap corruption (double free or corruption) and crashesEPSS 0.6%CVE-2024-43527HIGHWindows Kernel Elevation of Privilege VulnerabilityEPSS 0.6%CVE-2026-58095HIGHppp(8): incorrect length calculation in mp_Enddisc()EPSS 0.6%CVE-2023-32025HIGHMicrosoft ODBC Driver for SQL Server Remote Code Execution VulnerabilityEPSS 0.6%CVE-2023-32027HIGHMicrosoft ODBC Driver for SQL Server Remote Code Execution VulnerabilityEPSS 0.6%CVE-2026-4152HIGHGIMP JP2 File Parsing Heap-based Buffer Overflow Remote Code Execution VulnerabilityEPSS 0.6%