Fallos del tipo CWE-122

3195 resultados

Estouro de heap

É quando o código escreve dados além dos limites de um buffer alocado no heap (memória dinâmica), sobrescrevendo dados de outras estruturas adjacentes. Esse estouro pode corromper metadados do heap, variáveis vizinhas ou objetos do programa, permitindo execução de código arbitrário ou negação de serviço.

Ejemplo

Um servidor web recebe uma string de tamanho arbitrário e a copia para um buffer de 256 bytes sem validar o comprimento (ex: strcpy em C). Se o atacante enviar 500 bytes, o restante escreve além da zona alocada, corrompendo estruturas próximas e potencialmente ganhando controle do fluxo.

Cómo mitigar

Use funções seguras (strncpy, strlcpy, snprintf em C) que respeitam limites de tamanho; valide e sanitize entrada do usuário antes de copiar; ative proteções do SO (ASLR, DEP/NX); use linguagens de memória segura quando possível; aplique verificações de limites em loops de cópia.

CVE-2026-33899MEDIUMImageMagick: Heap BufferOverflow write of single zero byte when parsing XMLEPSS 0.5%CVE-2022-2580HIGHHeap-based Buffer Overflow in vim/vimEPSS 0.5%CVE-2024-8636HIGHHeap buffer overflow in Skia in Google Chrome prior to 128.0.6613.137 allowed a remote attacker to potentially exploit heap corruption via aEPSS 0.5%CVE-2023-27390HIGHA heap-based buffer overflow vulnerability exists in the Sequence::DrawText functionality of Diagon v1.0.139. A specially crafted markdown fEPSS 0.5%CVE-2026-23533HIGHFreeRDP has heap-buffer-overflow in clear_decompress_residual_dataEPSS 0.5%CVE-2026-23532HIGHFreeRDP has heap-buffer-overflow in gdi_SurfaceToSurfaceEPSS 0.5%CVE-2026-23534HIGHFreeRDP has heap-buffer-overflow in clear_decompress_bands_dataEPSS 0.5%CVE-2026-23530HIGHFreeRDP has heap-buffer-overflow in planar_decompress_plane_rleEPSS 0.5%CVE-2026-23531HIGHFreeRDP has heap-buffer-overflow in clear_decompressEPSS 0.5%CVE-2026-31968HIGHHTSlib CRAM decoder vulnerable to buffer overflowEPSS 0.5%CVE-2025-2152MEDIUMOpen Asset Import Library Assimp File BaseImporter.cpp ConvertToUTF8 heap-based overflowEPSS 0.5%CVE-2026-31971HIGHHTSlib CRAM decoder vulnerable to buffer overflowEPSS 0.5%CVE-2026-31963HIGHHTSlib CRAM reader has heap buffer overflow due to improper validation of inputEPSS 0.5%CVE-2026-31969HIGHHTSlib CRAM decoder has a heap buffer overflowEPSS 0.5%CVE-2025-62602LOWFastDDS has heap buffer overflow in readData via Manipulated DATA Submessage when DDS Security is enabledEPSS 0.5%CVE-2026-58081CRITICALHeap based buffer overflow in iconv(3)EPSS 0.5%CVE-2026-22854MEDIUMFreeRDP has a heap-buffer-overflow in drive_process_irp_readEPSS 0.5%CVE-2023-0051HIGHHeap-based Buffer Overflow in vim/vimEPSS 0.5%CVE-2022-45115HIGHA buffer overflow vulnerability exists in the Attribute Arena functionality of Ichitaro 2022 1.0.1.57600. A specially crafted document can lEPSS 0.5%CVE-2024-53956HIGHPremiere Pro | Heap-based Buffer Overflow (CWE-122)EPSS 0.5%