Falhas do tipo CWE-122

3.195 resultados

Estouro de heap

Ocorre quando código escreve mais dados do que o espaço alocado em uma região de memória dinâmica (heap), sobrescrevendo dados adjacentes. Um atacante pode explorar isso para corromper estruturas de dados críticas, contornar proteções de segurança ou executar código arbitrário.

Exemplo

Um servidor web aloca 256 bytes para armazenar um nome de usuário, mas copia 512 bytes de uma requisição sem validação. Os 256 bytes extras sobrescrevem ponteiros ou metadados do heap, permitindo execução de código ou negação de serviço.

Como mitigar

Use funções seguras que respeitam limites (strcpy_s, memcpy com tamanho verificado em runtime). Validar e limitar o tamanho de entrada antes de copiar. Ativar proteções como ASLR, stack canaries e ferramentas de sanitização (AddressSanitizer) em desenvolvimento.

CVE-2026-3915HIGHHeap buffer overflow in WebML in Google Chrome prior to 146.0.7680.71 allowed a remote attacker to perform an out of bounds memory read via EPSS 0.4%CVE-2023-2241MEDIUMPoDoFo PdfXRefStreamParserObject.cpp readXRefStreamEntry heap-based overflowEPSS 0.4%CVE-2023-38212HIGHZDI-CAN-21093: Adobe Dimension GLB File Parsing Heap-based Buffer Overflow Remote Code Execution VulnerabilityEPSS 0.4%CVE-2026-3555HIGHPhilips Hue Bridge Zigbee Stack Custom Command Handler Heap-based Buffer Overflow Remote Code Execution VulnerabilityEPSS 0.4%CVE-2026-2650HIGHHeap buffer overflow in Media in Google Chrome prior to 145.0.7632.109 allowed a remote attacker to potentially exploit heap corruption via EPSS 0.4%CVE-2023-1010MEDIUMvox2png vox2png.c heap-based overflowEPSS 0.4%CVE-2025-66862HIGHA buffer overflow vulnerability in function gnu_special in file cplus-dem.c in BinUtils 2.26 allows attackers to cause a denial of service vEPSS 0.4%CVE-2024-38796MEDIUMInteger overflow in PeCoffLoaderRelocateImageEPSS 0.4%CVE-2026-33298HIGHllama.cpp has a Heap Buffer Overflow via Integer Overflow in GGUF Tensor ParsingEPSS 0.4%CVE-2026-34150HIGHWazuh: Heap buffer overflow in wazuh-analysisd via rootcheck event parsingEPSS 0.4%CVE-2025-64330HIGHSuricata is vulnerable to a heap buffer overflow on verdictEPSS 0.4%CVE-2026-81389HIGHMicrosoft Excel Remote Code Execution VulnerabilityEPSS 0.4%CVE-2026-2920HIGHGStreamer ASF Demuxer Heap-based Buffer Overflow Remote Code Execution VulnerabilityEPSS 0.4%CVE-2025-55118HIGHBMC Control-M/Agent memory corruption in SSL/TLS communicationEPSS 0.4%CVE-2026-24822CRITICALa heap-based buffer overflow vulnerability in ttttupup/wxhelper via src/mongoose.EPSS 0.4%CVE-2026-26073MEDIUMEVerest: OCPP 1.6 heap corruption caused by lock-free insertion in event_queueEPSS 0.4%CVE-2026-48994MEDIUMImageMagick: Heap Buffer Over-Write in MAT decoder on 32-bit systemsEPSS 0.4%CVE-2026-40614HIGHPJSIP: Heap buffer overflow in Opus codec decodingEPSS 0.4%CVE-2025-59938MEDIUMHeap buffer overflow in wazuh-analysisdEPSS 0.4%CVE-2025-70103HIGHHeap buffer overflow vulnerability in libjxl 0.12.0 via crafted PBM images to the jxl::extras::DecodeImagePNM function in file lib/extras/deEPSS 0.4%