Weaknesses of type CWE-121

3,842 results

Estouro de buffer na pilha

Ocorre quando um programa escreve mais dados em um buffer alocado na pilha do que ele pode conter, sobrescrevendo dados adjacentes (variáveis, endereços de retorno, ponteiros). Um atacante pode explorar isso para executar código arbitrário ou causar travamento.

Example

Um programa lê uma string do usuário com gets() ou strcpy() sem validar o tamanho, copiando 500 bytes para um buffer de 64 bytes. O excesso sobrescreve o endereço de retorno da função, permitindo desviar a execução para código malicioso.

How to mitigate

Use funções seguras (strncpy, fgets, snprintf) que aceitam limite de bytes; implemente verificações de limites explícitas no código; ative proteções do compilador/SO (stack canaries, DEP/NX, ASLR); use linguagens com verificação automática de limites ou ferramentas de análise estática.

CVE-2023-2837MEDIUMStack-based Buffer Overflow in gpac/gpacEPSS 0.4%CVE-2025-51385LOWD-LINK DI-8200 16.07.26A1 is vulnerable to Buffer Overflow in the yyxz_dlink_asp function via the id parameter.EPSS 0.4%CVE-2025-63459HIGHTotolink A7000R v9.1.0u.6115_B20201022 was discovered to contain a stack overflow via the ssid5g parameter in the sub_421CF0 function. This EPSS 0.4%CVE-2025-63466HIGHTotolink LR350 v9.3.5u.6369_B20220309 was discovered to contain a stack overflow via the password parameter in the sub_426EF8 function. ThisEPSS 0.4%CVE-2025-63468HIGHTotolink LR350 v9.3.5u.6369_B20220309 was discovered to contain a stack overflow via the http_host parameter in the sub_426EF8 function. ThiEPSS 0.4%CVE-2025-63464HIGHTotolink LR350 v9.3.5u.6369_B20220309 was discovered to contain a stack overflow via the ssid parameter in the sub_42396C function. This vulEPSS 0.4%CVE-2025-63461HIGHTotolink A7000R v9.1.0u.6115_B20201022 was discovered to contain a stack overflow via the ssid5g parameter in the urldecode function. This vEPSS 0.4%CVE-2025-63463HIGHTotolink LR350 v9.3.5u.6369_B20220309 was discovered to contain a stack overflow via the wifiOff parameter in the sub_4232EC function. This EPSS 0.4%CVE-2025-63465HIGHTotolink LR350 v9.3.5u.6369_B20220309 was discovered to contain a stack overflow via the ssid parameter in the sub_422880 function. This vulEPSS 0.4%CVE-2025-63460HIGHTotolink A7000R v9.1.0u.6115_B20201022 was discovered to contain a stack overflow via the ssid5g parameter in the sub_4222E0 function. This EPSS 0.4%CVE-2025-24928HIGHlibxml2 before 2.12.10 and 2.13.x before 2.13.6 has a stack-based buffer overflow in xmlSnprintfElements in valid.c. To exploit this, DTD vaEPSS 0.4%CVE-2025-63467HIGHTotolink LR350 v9.3.5u.6369_B20220309 was discovered to contain a stack overflow via the ssid parameter in the sub_425400 function. This vulEPSS 0.4%CVE-2025-63462HIGHTotolink A7000R v9.1.0u.6115_B20201022 was discovered to contain a stack overflow via the wifiOff parameter in the sub_421A04 function. ThisEPSS 0.4%CVE-2025-63469HIGHTotolink LR350 v9.3.5u.6369_B20220309 was discovered to contain a stack overflow via the ssid parameter in the sub_421BAC function. This vulEPSS 0.4%CVE-2025-50528HIGHA buffer overflow vulnerability exists in the fromNatStaticSetting function of Tenda AC6 <=V15.03.05.19 via the page parameter.EPSS 0.4%CVE-2026-101354CRITICALFAST FAC1203R MmtAtePrase _tWlanTask stack-based overflowEPSS 0.4%CVE-2025-54099HIGHWindows Ancillary Function Driver for WinSock Elevation of Privilege VulnerabilityEPSS 0.4%CVE-2020-37136MEDIUMZOC Terminal v7.25.5 - 'Private key file' Denial of ServiceEPSS 0.4%CVE-2025-63455HIGHTenda AX-3 v16.03.12.10_CN was discovered to contain a stack overflow via the shareSpeed parameter in the fromSetWifiGusetBasic function. ThEPSS 0.4%CVE-2025-29364MEDIUMspimsimulator spim v9.1.24 and before is vulnerable to Buffer Overflow in the READ_SYSCALL and WRITE_SYSCALL system calls. The application vEPSS 0.4%