Fallos del tipo CWE-122

3195 resultados

Estouro de heap

É quando o código escreve dados além dos limites de um buffer alocado no heap (memória dinâmica), sobrescrevendo dados de outras estruturas adjacentes. Esse estouro pode corromper metadados do heap, variáveis vizinhas ou objetos do programa, permitindo execução de código arbitrário ou negação de serviço.

Ejemplo

Um servidor web recebe uma string de tamanho arbitrário e a copia para um buffer de 256 bytes sem validar o comprimento (ex: strcpy em C). Se o atacante enviar 500 bytes, o restante escreve além da zona alocada, corrompendo estruturas próximas e potencialmente ganhando controle do fluxo.

Cómo mitigar

Use funções seguras (strncpy, strlcpy, snprintf em C) que respeitam limites de tamanho; valide e sanitize entrada do usuário antes de copiar; ative proteções do SO (ASLR, DEP/NX); use linguagens de memória segura quando possível; aplique verificações de limites em loops de cópia.

CVE-2023-35305HIGHWindows Kernel Elevation of Privilege VulnerabilityEPSS 0.4%CVE-2026-69477HIGHMicrosoft Office Access Remote Code Execution VulnerabilityEPSS 0.4%CVE-2023-43787HIGHLibx11: integer overflow in xcreateimage() leading to a heap overflowEPSS 0.4%CVE-2022-1924—DOS / potential heap overwrite in mkv demuxing using lzo decompression. Integer overflow in matroskademux element in lzo decompression functEPSS 0.4%CVE-2026-32149HIGHWindows Hyper-V Remote Code Execution VulnerabilityEPSS 0.4%CVE-2026-19385HIGHPostgreSQL pg_dump heap buffer overflow executes arbitrary codeEPSS 0.4%CVE-2022-1923—DOS / potential heap overwrite in mkv demuxing using bzip decompression. Integer overflow in matroskademux element in bzip decompression funEPSS 0.4%CVE-2026-12466HIGHHeap buffer overflow in WebRTC in Google Chrome on Windows prior to 149.0.7827.155 allowed a remote attacker to execute arbitrary code via aEPSS 0.4%CVE-2026-15767HIGHHeap buffer overflow in libyuv in Google Chrome on Windows prior to 150.0.7871.125 allowed a remote attacker to execute arbitrary code insidEPSS 0.4%CVE-2026-28842HIGHThe issue was addressed with improved bounds checks. This issue is fixed in macOS Tahoe 26.4. A buffer overflow may result in memory corruptEPSS 0.4%CVE-2026-12447HIGHHeap buffer overflow in WebRTC in Google Chrome prior to 149.0.7827.155 allowed a remote attacker to execute arbitrary code inside a sandboxEPSS 0.4%CVE-2026-24857MEDIUMbulk_extractor has Heap-based Buffer Overflow vulnerabilityEPSS 0.4%CVE-2026-90439MEDIUMNGINX ngx_http_v3_module vulnerabilityEPSS 0.4%CVE-2025-59255HIGHWindows DWM Core Library Elevation of Privilege VulnerabilityEPSS 0.4%CVE-2024-39518HIGHJunos OS: MX240, MX480, MX960 platforms using MPC10E: Memory leak will be observed when subscribed to a specific subscription on Junos Telemetry InterfaceEPSS 0.4%CVE-2020-7586—A vulnerability has been identified in SIMATIC PCS 7 V8.2 and earlier (All versions), SIMATIC PCS 7 V9.0 (All versions < V9.0 SP3), SIMATIC EPSS 0.4%CVE-2026-18307HIGHGIMP TIF File Parsing Heap-based Buffer Overflow Remote Code Execution VulnerabilityEPSS 0.4%CVE-2024-30294HIGHAdobe Animate OGG File Parsing Heap Memory Corruption remote code execution VulnerabilityEPSS 0.4%CVE-2024-56805MEDIUMQTS, QuTS heroEPSS 0.4%CVE-2024-25115HIGHRedisBloom heap buffer overflow in CF.LOADCHUNK commandEPSS 0.4%