Falhas do tipo CWE-122

3.202 resultados

Estouro de heap

Ocorre quando código escreve mais dados do que o espaço alocado em uma região de memória dinâmica (heap), sobrescrevendo dados adjacentes. Um atacante pode explorar isso para corromper estruturas de dados críticas, contornar proteções de segurança ou executar código arbitrário.

Exemplo

Um servidor web aloca 256 bytes para armazenar um nome de usuário, mas copia 512 bytes de uma requisição sem validação. Os 256 bytes extras sobrescrevem ponteiros ou metadados do heap, permitindo execução de código ou negação de serviço.

Como mitigar

Use funções seguras que respeitam limites (strcpy_s, memcpy com tamanho verificado em runtime). Validar e limitar o tamanho de entrada antes de copiar. Ativar proteções como ASLR, stack canaries e ferramentas de sanitização (AddressSanitizer) em desenvolvimento.

CVE-2025-12495HIGHAcademy Software Foundation OpenEXR EXR File Parsing Heap-based Buffer Overflow Remote Code Execution VulnerabilityEPSS 0.2%CVE-2026-68513HIGHOpenEXR: Heap buffer overflow in PyOpenEXR from literal/prefixed RGB channel name collisionEPSS 0.2%CVE-2026-15170MEDIUMHeap-based Buffer Overflow in WiresharkEPSS 0.2%CVE-2023-31031MEDIUMCVEEPSS 0.2%CVE-2025-12839HIGHAcademy Software Foundation OpenEXR EXR File Parsing Heap-based Buffer Overflow Remote Code Execution VulnerabilityEPSS 0.2%CVE-2025-5915MEDIUMLibarchive: heap buffer over read in copy_from_lzss_window() at archive_read_support_format_rar.cEPSS 0.2%CVE-2023-23782HIGHA heap-based buffer overflow in Fortinet FortiWeb version 7.0.0 through 7.0.1, FortiWeb version 6.3.0 through 6.3.19, FortiWeb 6.4 all versiEPSS 0.2%CVE-2026-61721HIGHFluidSynth: Heap-based buffer overrun for DLS samplesEPSS 0.2%CVE-2026-30979HIGHiccDEV has a heap-based buffer overflow in CIccCalculatorFunc::InitSelectOp()EPSS 0.2%CVE-2025-9457HIGHPRT File Parsing Memory Corruption VulnerabilityEPSS 0.2%CVE-2026-13976MEDIUMInsufficient data validation in Storage in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer pEPSS 0.2%CVE-2025-53184MEDIUMNull pointer dereference vulnerability in the PDF preview module Impact: Successful exploitation of this vulnerability may affect function sEPSS 0.2%CVE-2025-53180MEDIUMNull pointer dereference vulnerability in the PDF preview module Impact: Successful exploitation of this vulnerability may affect function sEPSS 0.2%CVE-2025-53182MEDIUMNull pointer dereference vulnerability in the PDF preview module Impact: Successful exploitation of this vulnerability may affect function sEPSS 0.2%CVE-2025-53183MEDIUMNull pointer dereference vulnerability in the PDF preview module Impact: Successful exploitation of this vulnerability may affect function sEPSS 0.2%CVE-2026-68515HIGHOpenEXR: Heap out-of-bounds write in exrmultiview with subsampled channel unionEPSS 0.2%CVE-2022-34454MEDIUMDell PowerScale OneFS, versions 8.2.x-9.3.x, contain a heap-based buffer overflow. A local privileged malicious user could potentially exploEPSS 0.2%CVE-2026-39113MEDIUMBuffer Overflow vulnerability in SQLite affected version source snapshots/builds containing Fossil check-in 8bdc0d485e3ad0c7a1e818da66f10695EPSS 0.2%CVE-2026-9541MEDIUMSquirrel Cnut File sqobject.cpp ReadObject heap-based overflowEPSS 0.2%CVE-2025-53179MEDIUMNull pointer dereference vulnerability in the PDF preview module Impact: Successful exploitation of this vulnerability may affect function sEPSS 0.2%