Falhas do tipo CWE-122

3.195 resultados

Estouro de heap

Ocorre quando código escreve mais dados do que o espaço alocado em uma região de memória dinâmica (heap), sobrescrevendo dados adjacentes. Um atacante pode explorar isso para corromper estruturas de dados críticas, contornar proteções de segurança ou executar código arbitrário.

Exemplo

Um servidor web aloca 256 bytes para armazenar um nome de usuário, mas copia 512 bytes de uma requisição sem validação. Os 256 bytes extras sobrescrevem ponteiros ou metadados do heap, permitindo execução de código ou negação de serviço.

Como mitigar

Use funções seguras que respeitam limites (strcpy_s, memcpy com tamanho verificado em runtime). Validar e limitar o tamanho de entrada antes de copiar. Ativar proteções como ASLR, stack canaries e ferramentas de sanitização (AddressSanitizer) em desenvolvimento.

CVE-2026-72927MEDIUMWinsock Elevation of Privilege VulnerabilityEPSS 0.2%CVE-2026-24829MEDIUMOut-of-bounds write in is-EngineEPSS 0.2%CVE-2025-11014MEDIUMOGRECave Ogre Image OgreSTBICodec.cpp encode heap-based overflowEPSS 0.2%CVE-2025-50360HIGHA heap buffer overflow in compiler.c and compiler.h in Pepper language 0.1.1commit 961a5d9988c5986d563310275adad3fd181b2bb7. Malicious execuEPSS 0.2%CVE-2025-50054MEDIUMBuffer overflow in OpenVPN ovpn-dco-win version 1.3.0 and earlier and version 2.5.8 and earlier allows a local user process to send a too laEPSS 0.2%CVE-2023-31276HIGHHeap-based buffer overflow in BMC Firmware for the Intel(R) Server Board S2600WF, Intel(R) Server Board S2600ST, Intel(R) Server Board S2600EPSS 0.2%CVE-2020-13600HIGHMalformed SPI in response for eswifi can corrupt kernel memoryEPSS 0.2%CVE-2024-32619HIGHHDF5 Library through 1.14.3 contains a heap-based buffer overflow in H5T_copy_reopen in H5T.c, resulting in the corruption of the instructioEPSS 0.2%CVE-2024-32618HIGHHDF5 Library through 1.14.3 contains a heap-based buffer overflow in H5T__get_native_type in H5Tnative.c, resulting in the corruption of theEPSS 0.2%CVE-2025-54278MEDIUMBridge | Heap-based Buffer Overflow (CWE-122)EPSS 0.2%CVE-2024-34408MEDIUMTencent libpag through 4.3.51 has an integer overflow in DecodeStream::checkEndOfFile() in codec/utils/DecodeStream.cpp via a crafted PAG (PEPSS 0.2%CVE-2024-33489HIGHA vulnerability has been identified in Solid Edge (All versions < V224.0 Update 5). The affected application is vulnerable to heap-based bufEPSS 0.2%CVE-2025-22880HIGHHeap-based Buffer Overflow in CNCSoft-G2EPSS 0.2%CVE-2026-18298HIGHGStreamer PNG File Parsing Heap-based Buffer Overflow Remote Code Execution VulnerabilityEPSS 0.2%CVE-2025-11495MEDIUMGNU Binutils Linker elf64-x86-64.c elf_x86_64_relocate_section heap-based overflowEPSS 0.2%CVE-2026-22027MEDIUMCryptoLib Vulnerable to Heap Buffer Overflow in MariaDB SA Hexstring ConversionEPSS 0.2%CVE-2024-21913HIGHRockwell Automation Arena Simulation Vulnerable To Memory CorruptionEPSS 0.2%CVE-2026-53938HIGHOpenIDC/cjose has a heap buffer overflow in AES Key Wrap decryption (A128KW/A192KW/A256KW)EPSS 0.2%CVE-2022-37864—A vulnerability has been identified in Solid Edge (All Versions < SE2022MP9). The affected application contains an out of bounds write past EPSS 0.2%CVE-2025-2531HIGHLuxion KeyShot DAE File Parsing Heap-based Buffer Overflow Remote Code Execution VulnerabilityEPSS 0.2%