Falhas do tipo CWE-122

3.195 resultados

Estouro de heap

Ocorre quando código escreve mais dados do que o espaço alocado em uma região de memória dinâmica (heap), sobrescrevendo dados adjacentes. Um atacante pode explorar isso para corromper estruturas de dados críticas, contornar proteções de segurança ou executar código arbitrário.

Exemplo

Um servidor web aloca 256 bytes para armazenar um nome de usuário, mas copia 512 bytes de uma requisição sem validação. Os 256 bytes extras sobrescrevem ponteiros ou metadados do heap, permitindo execução de código ou negação de serviço.

Como mitigar

Use funções seguras que respeitam limites (strcpy_s, memcpy com tamanho verificado em runtime). Validar e limitar o tamanho de entrada antes de copiar. Ativar proteções como ASLR, stack canaries e ferramentas de sanitização (AddressSanitizer) em desenvolvimento.

CVE-2025-49604MEDIUMFor Realtek AmebaD devices, a heap-based buffer overflow was discovered in Ameba-AIoT ameba-arduino-d before version 3.1.9 and ameba-rtos-d EPSS 0.3%CVE-2026-56372MEDIUMImageMagick - Heap Buffer Overflow Read via Unrecognized Magnify MethodEPSS 0.3%CVE-2026-76888LOWHeap-based Buffer Overflow in WiresharkEPSS 0.3%CVE-2026-4455HIGHHeap buffer overflow in PDFium in Google Chrome prior to 146.0.7680.153 allowed a remote attacker to potentially exploit heap corruption viaEPSS 0.3%CVE-2024-31036MEDIUMA heap-buffer-overflow vulnerability in the read_byte function in NanoMQ v.0.21.7 allows attackers to cause a denial of service via transmisEPSS 0.3%CVE-2024-12670HIGHDWFX File Parsing Vulnerabilities in Autodesk Navisworks Desktop SoftwareEPSS 0.3%CVE-2024-12179HIGHDWFX File Parsing Vulnerabilities in Autodesk Navisworks Desktop SoftwareEPSS 0.3%CVE-2025-3158MEDIUMOpen Asset Import Library Assimp LWO File LWOAnimation.cpp UpdateAnimRangeSetup heap-based overflowEPSS 0.3%CVE-2026-9926HIGHHeap buffer overflow in ANGLE in Google Chrome prior to 148.0.7778.216 allowed a remote attacker who had compromised the renderer process toEPSS 0.3%CVE-2026-11716HIGHIBM MQ for HPE NonStop is vulnerable to a denial of service attackEPSS 0.3%CVE-2026-11381HIGHIBM MQ for HPE NonStop is vulnerable to a denial of service issueEPSS 0.3%CVE-2026-9924HIGHHeap buffer overflow in ANGLE in Google Chrome on Windows prior to 148.0.7778.216 allowed a remote attacker who had compromised the rendererEPSS 0.3%CVE-2026-14427HIGHHeap buffer overflow in Skia in Google Chrome prior to 150.0.7871.46 allowed a remote attacker who had compromised the renderer process to pEPSS 0.3%CVE-2026-9915HIGHHeap buffer overflow in ANGLE in Google Chrome prior to 148.0.7778.216 allowed a remote attacker who had compromised the renderer process toEPSS 0.3%CVE-2025-3159MEDIUMOpen Asset Import Library Assimp ASE File ASEParser.cpp ParseLV4MeshBonesVertices heap-based overflowEPSS 0.3%CVE-2026-19138HIGHHeap buffer overflow in CrashReporting in Google Chrome prior to 151.0.7922.109 allowed a remote attacker who had compromised the renderer pEPSS 0.3%CVE-2025-2497HIGHDWG File Parsing Stack-Based Buffer VulnerabilityEPSS 0.3%CVE-2026-58379HIGHGimp: gimp: heap buffer overflow in read_channel_data()EPSS 0.3%CVE-2025-59504HIGHAzure Monitor Agent Remote Code Execution VulnerabilityEPSS 0.3%CVE-2026-42046HIGHlibcaca: Heap OOB write in canvas import functions caused by int overflowEPSS 0.3%