Falhas do tipo CWE-122

3.195 resultados

Estouro de heap

Ocorre quando código escreve mais dados do que o espaço alocado em uma região de memória dinâmica (heap), sobrescrevendo dados adjacentes. Um atacante pode explorar isso para corromper estruturas de dados críticas, contornar proteções de segurança ou executar código arbitrário.

Exemplo

Um servidor web aloca 256 bytes para armazenar um nome de usuário, mas copia 512 bytes de uma requisição sem validação. Os 256 bytes extras sobrescrevem ponteiros ou metadados do heap, permitindo execução de código ou negação de serviço.

Como mitigar

Use funções seguras que respeitam limites (strcpy_s, memcpy com tamanho verificado em runtime). Validar e limitar o tamanho de entrada antes de copiar. Ativar proteções como ASLR, stack canaries e ferramentas de sanitização (AddressSanitizer) em desenvolvimento.

CVE-2025-6516MEDIUMHDF5 H5Fint.c H5F_addr_decode_len heap-based overflowEPSS 0.4%CVE-2026-49882HIGHIn rw_mfc_handle_read_op of rw_mfc.cc, there is a possible memory safety issue due to a heap buffer overflow. This could lead to remote codeEPSS 0.4%CVE-2025-1051HIGHSonos Era 300 Heap-based Buffer Overflow Remote Code Execution VulnerabilityEPSS 0.4%CVE-2024-29508LOWArtifex Ghostscript before 10.03.0 has a heap-based pointer disclosure (observable in a constructed BaseFont name) in the function pdf_base_EPSS 0.4%CVE-2026-28618HIGHIn dec_frm_prepare of oapv.c, there is a possible OOB write due to a heap buffer overflow. This could lead to remote code execution with no EPSS 0.4%CVE-2025-64680HIGHWindows DWM Core Library Elevation of Privilege VulnerabilityEPSS 0.4%CVE-2025-22134MEDIUMheap-buffer-overflow with visual mode in Vim < 9.1.1003EPSS 0.4%CVE-2026-10946HIGHHeap buffer overflow in Media in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who convinced a user to engage in specific UEPSS 0.4%CVE-2024-41437MEDIUMA heap buffer overflow in the function cp_unfilter() (/vendor/cute_png.h) of hicolor v0.5.0 allows attackers to cause a Denial of Service (DEPSS 0.4%CVE-2024-23155HIGHMultiple ZDI Vulnerabilities in Autodesk AutoCAD and certain AutoCAD-based productsEPSS 0.4%CVE-2026-4675HIGHHeap buffer overflow in WebGL in Google Chrome prior to 146.0.7680.165 allowed a remote attacker to perform an out of bounds memory read viaEPSS 0.4%CVE-2026-3913HIGHHeap buffer overflow in WebML in Google Chrome prior to 146.0.7680.71 allowed a remote attacker to potentially exploit heap corruption via aEPSS 0.4%CVE-2026-10858CRITICALIBM MQ for HPE NonStop is vulnerable to a denial of service attackEPSS 0.4%CVE-2026-3915HIGHHeap buffer overflow in WebML in Google Chrome prior to 146.0.7680.71 allowed a remote attacker to perform an out of bounds memory read via EPSS 0.4%CVE-2026-6296CRITICALHeap buffer overflow in ANGLE in Google Chrome prior to 147.0.7727.101 allowed a remote attacker to potentially perform a sandbox escape viaEPSS 0.4%CVE-2026-17951HIGHHeap buffer overflow in WebRTC in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to perform an out of bounds memory read viaEPSS 0.4%CVE-2026-13798CRITICALHeap buffer overflow in Chromecast in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer procesEPSS 0.4%CVE-2026-4673HIGHHeap buffer overflow in WebAudio in Google Chrome prior to 146.0.7680.165 allowed a remote attacker to perform an out of bounds memory writeEPSS 0.4%CVE-2026-17680CRITICALHeap buffer overflow in Color in Google Chrome on ChromeOS prior to 151.0.7922.72 allowed a remote attacker who had compromised the rendererEPSS 0.4%CVE-2026-17758CRITICALHeap buffer overflow in Dawn in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to potentially perform a sandbox escape via aEPSS 0.4%