Falhas do tipo CWE-122

3.195 resultados

Estouro de heap

Ocorre quando código escreve mais dados do que o espaço alocado em uma região de memória dinâmica (heap), sobrescrevendo dados adjacentes. Um atacante pode explorar isso para corromper estruturas de dados críticas, contornar proteções de segurança ou executar código arbitrário.

Exemplo

Um servidor web aloca 256 bytes para armazenar um nome de usuário, mas copia 512 bytes de uma requisição sem validação. Os 256 bytes extras sobrescrevem ponteiros ou metadados do heap, permitindo execução de código ou negação de serviço.

Como mitigar

Use funções seguras que respeitam limites (strcpy_s, memcpy com tamanho verificado em runtime). Validar e limitar o tamanho de entrada antes de copiar. Ativar proteções como ASLR, stack canaries e ferramentas de sanitização (AddressSanitizer) em desenvolvimento.

CVE-2025-70122HIGHA heap buffer overflow vulnerability in the UPF component of free5GC v4.0.1 allows remote attackers to cause a denial of service via a craftEPSS 0.4%CVE-2020-25712—A flaw was found in xorg-x11-server before 1.20.10. A heap-buffer overflow in XkbSetDeviceInfo may lead to a privilege escalation vulnerabilEPSS 0.4%CVE-2023-2763HIGHUse-After-Free, Out-of-bounds Write and Heap-based Buffer Overflow vulnerabilities exist in the DWG and DXF file reading procedure in SOLIDWORKS Desktop from Release SOLIDWORKS 2021 through Release SOLIDWORKS 2023EPSS 0.4%CVE-2022-44910HIGHBinbloom 2.0 was discovered to contain a heap buffer overflow via the read_pointer function at /binbloom-master/src/helpers.c.EPSS 0.4%CVE-2025-49727HIGHWin32k Elevation of Privilege VulnerabilityEPSS 0.4%CVE-2025-55697HIGHAzure Local Elevation of Privilege VulnerabilityEPSS 0.4%CVE-2024-11511HIGHIrfanView XCF Plugin XCF File Parsing Heap-based Buffer Overflow Remote Code Execution VulnerabilityEPSS 0.4%CVE-2026-10995HIGHHeap buffer overflow in TabStrip in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who convinced a user to engage in specifiEPSS 0.4%CVE-2025-14935HIGHNSF Unidata NetCDF-C Dimension Name Heap-based Buffer Overflow Remote Code Execution VulnerabilityEPSS 0.4%CVE-2025-70299MEDIUMA heap overflow in the avi_parse_input_file() function of GPAC v2.4.0 allows attackers to cause a Denial of Service (DoS) via a crafted AVI EPSS 0.4%CVE-2025-11778CRITICALStack-based buffer overflow vulnreability in Circutor SGE-PLC1000/SGE-PLC50EPSS 0.4%CVE-2026-81665HIGHCorosync: corosync: heap-based buffer overflow in totempg assembly buffer during fragmented message reassemblyEPSS 0.3%CVE-2026-11884MEDIUM389-ds-base: 389-ds-base: heap buffer overflow in schema objectclass serialization due to missing oc_superior in size calculationEPSS 0.3%CVE-2026-71339MEDIUMWindows Installer Elevation of Privilege VulnerabilityEPSS 0.3%CVE-2026-81354HIGHWindows Hello Elevation of Privilege VulnerabilityEPSS 0.3%CVE-2026-69449MEDIUMWindows BitLocker Remote Code Execution VulnerabilityEPSS 0.3%CVE-2026-62881MEDIUMWindows DNS Elevation of Privilege VulnerabilityEPSS 0.3%CVE-2026-62769MEDIUMWindows DNS Elevation of Privilege VulnerabilityEPSS 0.3%CVE-2026-72961HIGHWindows Hyper-V Elevation of Privilege VulnerabilityEPSS 0.3%CVE-2026-69820HIGHWindows Hello Elevation of Privilege VulnerabilityEPSS 0.3%