Fallos del tipo CWE-122

3195 resultados

Estouro de heap

É quando o código escreve dados além dos limites de um buffer alocado no heap (memória dinâmica), sobrescrevendo dados de outras estruturas adjacentes. Esse estouro pode corromper metadados do heap, variáveis vizinhas ou objetos do programa, permitindo execução de código arbitrário ou negação de serviço.

Ejemplo

Um servidor web recebe uma string de tamanho arbitrário e a copia para um buffer de 256 bytes sem validar o comprimento (ex: strcpy em C). Se o atacante enviar 500 bytes, o restante escreve além da zona alocada, corrompendo estruturas próximas e potencialmente ganhando controle do fluxo.

Cómo mitigar

Use funções seguras (strncpy, strlcpy, snprintf em C) que respeitam limites de tamanho; valide e sanitize entrada do usuário antes de copiar; ative proteções do SO (ASLR, DEP/NX); use linguagens de memória segura quando possível; aplique verificações de limites em loops de cópia.

CVE-2025-4096HIGHHeap buffer overflow in HTML in Google Chrome prior to 136.0.7103.59 allowed a remote attacker to potentially exploit heap corruption via a EPSS 0.5%CVE-2023-47118HIGHHeap buffer overflow in T64 codec decompressionEPSS 0.5%CVE-2024-46264HIGHcute_png v1.05 was discovered to contain a heap buffer overflow via the cp_find() function at cute_png.h.EPSS 0.5%CVE-2024-20522MEDIUMCisco Small Business RV042, RV042G, RV320, and RV325 Denial of Service VulnerabilitiesEPSS 0.5%CVE-2024-40754MEDIUMHeap-based Buffer Overflow vulnerability in Samsung Open Source Escargot JavaScript engine allows Overflow Buffers.This issue affects EscargEPSS 0.5%CVE-2025-53723HIGHWindows Hyper-V Elevation of Privilege VulnerabilityEPSS 0.5%CVE-2025-53155HIGHWindows Hyper-V Elevation of Privilege VulnerabilityEPSS 0.5%CVE-2023-44428HIGHMuseScore CAP File Parsing Heap-based Buffer Overflow Remote Code Execution VulnerabilityEPSS 0.5%CVE-2026-26284MEDIUMImageMagick has heap overflow in pcd decoder that leads to out of bounds read.EPSS 0.5%CVE-2026-40691HIGHPacket of death for DNSCrypt over TCPEPSS 0.5%CVE-2025-14673MEDIUMgmg137 snap7-rs client.rs as_ct_write heap-based overflowEPSS 0.5%CVE-2026-75893HIGHHeap based buffer overflow at ipaccess_proxy_read_msg()EPSS 0.5%CVE-2026-33633HIGHKitty has a Heap Buffer Overflow in its Graphics Protocol HandlerEPSS 0.5%CVE-2026-67860HIGHopen62541 1.5.5 contains a heap-based buffer overflow in the default HistoryRead path when the default history database is used with the memEPSS 0.5%CVE-2026-38347HIGHA heap overflow in the ff_sws_alphablendaway function (libswscale/alphablend.c) of FFmpeg git-master commit 722a217 allows attackers to causEPSS 0.5%CVE-2026-33986HIGHFreeRDP: H.264 YUV Buffer Dimension Desync - Heap OOB WriteEPSS 0.5%CVE-2026-77102HIGHCommServe Denial of ServiceEPSS 0.5%CVE-2025-14672MEDIUMgmg137 snap7-rs s7_micro_client.cpp opWriteArea heap-based overflowEPSS 0.5%CVE-2026-18282HIGHSony XAV-9500ES AVRCP_Br_Response_Parser Heap-based Buffer Overflow Remote Code Execution VulnerabilityEPSS 0.5%CVE-2026-18281HIGHSony XAV-9500ES l2_reassemble_sdu Heap-based Buffer Overflow Remote Code Execution VulnerabilityEPSS 0.5%