Fallos del tipo CWE-122

3195 resultados

Estouro de heap

É quando o código escreve dados além dos limites de um buffer alocado no heap (memória dinâmica), sobrescrevendo dados de outras estruturas adjacentes. Esse estouro pode corromper metadados do heap, variáveis vizinhas ou objetos do programa, permitindo execução de código arbitrário ou negação de serviço.

Ejemplo

Um servidor web recebe uma string de tamanho arbitrário e a copia para um buffer de 256 bytes sem validar o comprimento (ex: strcpy em C). Se o atacante enviar 500 bytes, o restante escreve além da zona alocada, corrompendo estruturas próximas e potencialmente ganhando controle do fluxo.

Cómo mitigar

Use funções seguras (strncpy, strlcpy, snprintf em C) que respeitam limites de tamanho; valide e sanitize entrada do usuário antes de copiar; ative proteções do SO (ASLR, DEP/NX); use linguagens de memória segura quando possível; aplique verificações de limites em loops de cópia.

CVE-2024-49509HIGHInDesign Desktop | Heap-based Buffer Overflow (CWE-122)EPSS 0.5%CVE-2026-84510MEDIUMA heap buffer overflow was addressed with improved bounds checking. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, mEPSS 0.5%CVE-2026-32741HIGHlibheif has a heap buffer overflow in decode_mask_image()EPSS 0.4%CVE-2023-28225HIGHWindows NTLM Elevation of Privilege VulnerabilityEPSS 0.4%CVE-2022-23086CRITICALmpr/mps/mpt driver ioctl heap out-of-bounds writeEPSS 0.4%CVE-2025-54091HIGHWindows Hyper-V Elevation of Privilege VulnerabilityEPSS 0.4%CVE-2025-15247MEDIUMgmg137 snap7-rs client.rs download heap-based overflowEPSS 0.4%CVE-2022-4141HIGHHeap-based Buffer Overflow in vim/vimEPSS 0.4%CVE-2022-2069HIGH Datalogics APDFL library Heap-based Buffer OverflowEPSS 0.4%CVE-2025-54894HIGHLocal Security Authority Subsystem Service Elevation of Privilege VulnerabilityEPSS 0.4%CVE-2022-2991—A heap-based buffer overflow was found in the Linux kernel's LightNVM subsystem. The issue results from the lack of proper validation of theEPSS 0.4%CVE-2026-54715HIGHGoAccess: Heap Out-of-Bounds Write in parse_browser()EPSS 0.4%CVE-2026-44251MEDIUMWazuh : size_t underflow in msgs.c ReadSecMSG causes wazuh-remoted DoS and potential heap overflow via crafted agent messageEPSS 0.4%CVE-2026-76046HIGHBuffer overflow in ANGLE in Google Chrome on on Android prior to 151.0.7922.169 allowed a remote attacker who had compromised the renderer pEPSS 0.4%CVE-2024-49552HIGHMedia Encoder | Heap-based Buffer Overflow (CWE-122)EPSS 0.4%CVE-2024-20517MEDIUMCisco Small Business RV042, RV042G, RV320, and RV325 Denial of Service VulnerabilitiesEPSS 0.4%CVE-2026-44950CRITICALfs_read_glyphs() heap buffer overflow via cumulative glyph data overflow in libXfont2EPSS 0.4%CVE-2024-20516MEDIUMCisco Small Business RV042, RV042G, RV320, and RV325 Denial of Service VulnerabilitiesEPSS 0.4%CVE-2021-31429HIGHThis vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 15.1.5-47309. An attacker muEPSS 0.4%CVE-2021-31428HIGHThis vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 15.1.5-47309. An attacker muEPSS 0.4%