Falhas do tipo CWE-122

3.210 resultados

Estouro de heap

Ocorre quando código escreve mais dados do que o espaço alocado em uma região de memória dinâmica (heap), sobrescrevendo dados adjacentes. Um atacante pode explorar isso para corromper estruturas de dados críticas, contornar proteções de segurança ou executar código arbitrário.

Exemplo

Um servidor web aloca 256 bytes para armazenar um nome de usuário, mas copia 512 bytes de uma requisição sem validação. Os 256 bytes extras sobrescrevem ponteiros ou metadados do heap, permitindo execução de código ou negação de serviço.

Como mitigar

Use funções seguras que respeitam limites (strcpy_s, memcpy com tamanho verificado em runtime). Validar e limitar o tamanho de entrada antes de copiar. Ativar proteções como ASLR, stack canaries e ferramentas de sanitização (AddressSanitizer) em desenvolvimento.

CVE-2026-20480MEDIUMIn Audio HAL, there is a possible out of bounds write due to a heap buffer overflow. This could lead to local denial of service with User exEPSS 0.1%CVE-2026-76917MEDIUMHeap-based Buffer Overflow in WiresharkEPSS 0.1%CVE-2022-39852HIGHA heap-based overflow vulnerability in makeContactAGIF in libagifencoder.quram.so library prior to SMR Oct-2022 Release 1 allows attacker toEPSS 0.1%CVE-2022-26092HIGHImproper boundary check in Quram Agif library prior to SMR Apr-2022 Release 1 allows arbitrary code execution.EPSS 0.1%CVE-2026-12193HIGHVS Revo RevoUninstaller IOCTL RevoDetector.sys IOCtl_Handler heap-based overflowEPSS 0.1%CVE-2026-70654MEDIUMlibvips: A well-crafted PPM image processed via a custom source could lead to possible heap buffer write overflowEPSS 0.1%CVE-2026-30937MEDIUMImageMagick has a heap buffer overflow in WriteXWDImage due to CARD32 arithmetic overflow in bytes_per_line calculationEPSS 0.1%CVE-2026-56135HIGHIn NTFS-3G through 2026.2.25, a heap-based buffer overflow exists in the function build_inherited_id() in libntfs-3g/security.c that allows EPSS 0.1%CVE-2026-6530MEDIUMHeap-based Buffer Overflow in WiresharkEPSS 0.1%CVE-2026-15165MEDIUMHeap-based Buffer Overflow in WiresharkEPSS 0.1%CVE-2026-6529MEDIUMHeap-based Buffer Overflow in WiresharkEPSS 0.1%CVE-2026-42477MEDIUMA heap-based out-of-bounds read vulnerability in RWObj_Reader::read in the OBJ file parser in Open CASCADE Technology (OCCT) V8_0_0_rc5 alloEPSS 0.1%CVE-2026-44636HIGHlibsixel: integer overflow in encoderEPSS 0.1%CVE-2025-5942MEDIUMHeap Overflow in Netskope Endpoint DLP DriverEPSS 0.1%CVE-2025-55286HIGHz2d OOB drawing with new multi-sample anti-aliasing could lead to invalid memory access and corruptionEPSS 0.1%CVE-2025-20735HIGHIn wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilegEPSS 0.1%CVE-2026-76883MEDIUMHeap-based Buffer Overflow in WiresharkEPSS 0.1%CVE-2025-20733HIGHIn wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilegEPSS 0.1%CVE-2026-23719HIGHA vulnerability has been identified in Simcenter Femap (All versions < V2512), Simcenter Nastran (All versions < V2512). The affected applicEPSS 0.1%CVE-2026-76889MEDIUMHeap-based Buffer Overflow in WiresharkEPSS 0.1%