Falhas do tipo CWE-122

3.195 resultados

Estouro de heap

Ocorre quando código escreve mais dados do que o espaço alocado em uma região de memória dinâmica (heap), sobrescrevendo dados adjacentes. Um atacante pode explorar isso para corromper estruturas de dados críticas, contornar proteções de segurança ou executar código arbitrário.

Exemplo

Um servidor web aloca 256 bytes para armazenar um nome de usuário, mas copia 512 bytes de uma requisição sem validação. Os 256 bytes extras sobrescrevem ponteiros ou metadados do heap, permitindo execução de código ou negação de serviço.

Como mitigar

Use funções seguras que respeitam limites (strcpy_s, memcpy com tamanho verificado em runtime). Validar e limitar o tamanho de entrada antes de copiar. Ativar proteções como ASLR, stack canaries e ferramentas de sanitização (AddressSanitizer) em desenvolvimento.

CVE-2024-20785HIGHAdobe Indesign 2024 TIFF File Parsing Memory Corruption Remote Code Execution vulnerabilityEPSS 0.4%CVE-2024-41850HIGHAdobe Indesign 2024 TIF File Parsing Heap Memory CorruptionEPSS 0.4%CVE-2026-34119HIGHHeap-based Buffer Overflow Vulnerability Leading to Denial-of-Service in TP-Link Tapo C520WSEPSS 0.4%CVE-2026-34120HIGHHeap-based Buffer Overflow Vulnerability Leading to Denial-of-Service in TP-Link Tapo C520WSEPSS 0.4%CVE-2026-21682HIGHiccDEV has heap-buffer-overflow in CIccXmlArrayType::ParseText()EPSS 0.4%CVE-2026-49790HIGHWindows Universal Disk Format File System Driver (UDFS) Elevation of Privilege VulnerabilityEPSS 0.4%CVE-2026-50482HIGHWindows NTFS Remote Code Execution VulnerabilityEPSS 0.4%CVE-2026-58640HIGHWindows NTFS Remote Code Execution VulnerabilityEPSS 0.4%CVE-2023-0760HIGHHeap-based Buffer Overflow in gpac/gpacEPSS 0.4%CVE-2025-48805HIGHMicrosoft MPEG-2 Video Extension Remote Code Execution VulnerabilityEPSS 0.4%CVE-2026-4463HIGHHeap buffer overflow in WebRTC in Google Chrome prior to 146.0.7680.153 allowed a remote attacker to potentially exploit heap corruption viaEPSS 0.4%CVE-2026-92842MEDIUMOOB read / info leak in convert.* stream filters when line-break-chars contains NULEPSS 0.4%CVE-2026-4442HIGHHeap buffer overflow in CSS in Google Chrome prior to 146.0.7680.153 allowed a remote attacker to potentially exploit heap corruption via a EPSS 0.4%CVE-2018-7519—In Omron CX-Supervisor Versions 3.30 and prior, parsing malformed project files may cause a heap-based buffer overflow.EPSS 0.4%CVE-2026-4448HIGHHeap buffer overflow in ANGLE in Google Chrome prior to 146.0.7680.153 allowed a remote attacker to potentially exploit heap corruption via EPSS 0.4%CVE-2026-3544HIGHHeap buffer overflow in WebCodecs in Google Chrome prior to 145.0.7632.159 allowed a remote attacker to perform an out of bounds memory writEPSS 0.4%CVE-2024-11576HIGHLuxion KeyShot 3DS File Parsing Heap-based Buffer Overflow Remote Code Execution VulnerabilityEPSS 0.4%CVE-2025-43912MEDIUMDell PowerProtect Data Domain with Data Domain Operating System (DD OS) of Feature Release versions 7.7.1.0 through 8.3.0.15, LTS2025 releasEPSS 0.4%CVE-2025-2309MEDIUMHDF5 Type Conversion Logic H5T__bit_copy heap-based overflowEPSS 0.4%CVE-2022-44910HIGHBinbloom 2.0 was discovered to contain a heap buffer overflow via the read_pointer function at /binbloom-master/src/helpers.c.EPSS 0.4%