Fallos del tipo CWE-122

3195 resultados

Estouro de heap

É quando o código escreve dados além dos limites de um buffer alocado no heap (memória dinâmica), sobrescrevendo dados de outras estruturas adjacentes. Esse estouro pode corromper metadados do heap, variáveis vizinhas ou objetos do programa, permitindo execução de código arbitrário ou negação de serviço.

Ejemplo

Um servidor web recebe uma string de tamanho arbitrário e a copia para um buffer de 256 bytes sem validar o comprimento (ex: strcpy em C). Se o atacante enviar 500 bytes, o restante escreve além da zona alocada, corrompendo estruturas próximas e potencialmente ganhando controle do fluxo.

Cómo mitigar

Use funções seguras (strncpy, strlcpy, snprintf em C) que respeitam limites de tamanho; valide e sanitize entrada do usuário antes de copiar; ative proteções do SO (ASLR, DEP/NX); use linguagens de memória segura quando possível; aplique verificações de limites em loops de cópia.

CVE-2026-4152HIGHGIMP JP2 File Parsing Heap-based Buffer Overflow Remote Code Execution VulnerabilityEPSS 0.6%CVE-2023-4738HIGHHeap-based Buffer Overflow in vim/vimEPSS 0.6%CVE-2026-91964HIGHFreeRDP 2.0.0 through 3.30.0 Heap Buffer Overflow via RoutingTokenEPSS 0.6%CVE-2026-32961MEDIUMSD-330AC and AMC Manager provided by silex technology, Inc. contain a heap-based buffer overflow vulnerability in packet data processing of EPSS 0.6%CVE-2023-28292HIGHRaw Image Extension Remote Code Execution VulnerabilityEPSS 0.6%CVE-2026-41509MEDIUMInteger underflow in crypto_sign_open() leads to buffer overflowEPSS 0.6%CVE-2025-49730HIGHMicrosoft Windows QoS Scheduler Driver Elevation of Privilege VulnerabilityEPSS 0.6%CVE-2024-26327MEDIUMAn issue was discovered in QEMU 7.1.0 through 8.2.1. register_vfs in hw/pci/pcie_sriov.c mishandles the situation where a guest writes NumVFEPSS 0.6%CVE-2025-27490HIGHWindows Bluetooth Service Elevation of Privilege VulnerabilityEPSS 0.6%CVE-2025-49729HIGHWindows Routing and Remote Access Service (RRAS) Remote Code Execution VulnerabilityEPSS 0.6%CVE-2023-1906MEDIUMA heap-based buffer overflow issue was discovered in ImageMagick's ImportMultiSpectralQuantum() function in MagickCore/quantum-import.c. An EPSS 0.6%CVE-2026-4395LOWHeap-based buffer overflow in wc_ecc_import_x963_ex KCAPI pathEPSS 0.6%CVE-2025-1426HIGHHeap buffer overflow in GPU in Google Chrome on Android prior to 133.0.6943.126 allowed a remote attacker to potentially exploit heap corrupEPSS 0.6%CVE-2026-5264HIGHDTLS 1.3 ACK heap buffer overflowEPSS 0.6%CVE-2026-25794HIGHImageMagick has heap-buffer-overflow via signed integer overflow in `WriteUHDRImage` when writing UHDR images with large dimensionsEPSS 0.6%CVE-2025-0903HIGHPDF-XChange Editor RTF File Parsing Heap-based Buffer Overflow Remote Code Execution VulnerabilityEPSS 0.6%CVE-2025-2337MEDIUMtbeu matio mat.c Mat_VarPrint heap-based overflowEPSS 0.6%CVE-2026-22891CRITICALA heap-based buffer overflow vulnerability exists in the Intan CLP parsing functionality of The Biosig Project libbiosig 3.9.2 and Master BrEPSS 0.6%CVE-2025-7208MEDIUM9fans plan9port x509.c edump heap-based overflowEPSS 0.6%CVE-2026-31962HIGHHTSlib CRAM reader has heap buffer overflow due to improper validation of inputEPSS 0.6%