Falhas do tipo CWE-122

3.195 resultados

Estouro de heap

Ocorre quando código escreve mais dados do que o espaço alocado em uma região de memória dinâmica (heap), sobrescrevendo dados adjacentes. Um atacante pode explorar isso para corromper estruturas de dados críticas, contornar proteções de segurança ou executar código arbitrário.

Exemplo

Um servidor web aloca 256 bytes para armazenar um nome de usuário, mas copia 512 bytes de uma requisição sem validação. Os 256 bytes extras sobrescrevem ponteiros ou metadados do heap, permitindo execução de código ou negação de serviço.

Como mitigar

Use funções seguras que respeitam limites (strcpy_s, memcpy com tamanho verificado em runtime). Validar e limitar o tamanho de entrada antes de copiar. Ativar proteções como ASLR, stack canaries e ferramentas de sanitização (AddressSanitizer) em desenvolvimento.

CVE-2021-31429HIGHThis vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 15.1.5-47309. An attacker muEPSS 0.4%CVE-2026-66039HIGHFFmpeg MACE6 Audio Decoder Heap Out-of-Bounds Write via CAF FileEPSS 0.4%CVE-2025-44904HIGHhdf5 v1.14.6 was discovered to contain a heap buffer overflow via the H5VM_memcpyvv function.EPSS 0.4%CVE-2023-28262HIGHVisual Studio Elevation of Privilege VulnerabilityEPSS 0.4%CVE-2024-46488CRITICALsqlite-vec v0.1.1 was discovered to contain a heap buffer overflow via the npy_token_next function. This vulnerability allows attackers to cEPSS 0.4%CVE-2026-62699MEDIUMWindows Universal Disk Format File System Driver (UDFS) Remote Code Execution VulnerabilityEPSS 0.4%CVE-2026-71349MEDIUMWindows Spaceport.sys Remote Code Execution VulnerabilityEPSS 0.4%CVE-2023-50009HIGHFFmpeg v.n6.1-3-g466799d4f5 allows a heap-based buffer overflow via the ff_gaussian_blur_8 function in libavfilter/edge_template.c:116:5 comEPSS 0.4%CVE-2026-71348MEDIUMWindows Spaceport.sys Remote Code Execution VulnerabilityEPSS 0.4%CVE-2026-50299MEDIUMWindows Storage Spaces Direct Remote Code Execution VulnerabilityEPSS 0.4%CVE-2025-40929MEDIUMCpanel::JSON::XS before version 4.40 for Perl has an integer buffer overflow causing a segfault when parsing crafted JSON, enabling denial-of-service attacks or other unspecified impactEPSS 0.4%CVE-2026-68833MEDIUMWindows NTFS Remote Code Execution VulnerabilityEPSS 0.4%CVE-2026-50492MEDIUMWindows Resilient File System (ReFS) Remote Code Execution VulnerabilityEPSS 0.4%CVE-2026-69566MEDIUMWindows NTFS Remote Code Execution VulnerabilityEPSS 0.4%CVE-2026-71350MEDIUMWindows Spaceport.sys Remote Code Execution VulnerabilityEPSS 0.4%CVE-2026-72985MEDIUMVolume Shadow Copy Elevation of Privilege VulnerabilityEPSS 0.4%CVE-2026-50668MEDIUMWindows Resilient File System (ReFS) Elevation of Privilege VulnerabilityEPSS 0.4%CVE-2024-45993MEDIUMGiflib Project v5.2.2 is vulnerable to a heap buffer overflow via gif2rgb.EPSS 0.4%CVE-2023-38076HIGHA vulnerability has been identified in JT2Go (All versions < V14.3.0.1), Teamcenter Visualization V13.3 (All versions < V13.3.0.12), TeamcenEPSS 0.4%CVE-2026-54132MEDIUMWindows Kernel Elevation of Privilege VulnerabilityEPSS 0.4%