Weaknesses of type CWE-121

3,825 results

Estouro de buffer na pilha

Ocorre quando um programa escreve mais dados em um buffer alocado na pilha do que ele pode conter, sobrescrevendo dados adjacentes (variáveis, endereços de retorno, ponteiros). Um atacante pode explorar isso para executar código arbitrário ou causar travamento.

Example

Um programa lê uma string do usuário com gets() ou strcpy() sem validar o tamanho, copiando 500 bytes para um buffer de 64 bytes. O excesso sobrescreve o endereço de retorno da função, permitindo desviar a execução para código malicioso.

How to mitigate

Use funções seguras (strncpy, fgets, snprintf) que aceitam limite de bytes; implemente verificações de limites explícitas no código; ative proteções do compilador/SO (stack canaries, DEP/NX, ASLR); use linguagens com verificação automática de limites ou ferramentas de análise estática.

CVE-2024-43689HIGHStack-based buffer overflow vulnerability exists in ELECOM wireless access points. By processing a specially crafted HTTP request, arbitraryEPSS 0.9%CVE-2024-34213CRITICALTOTOLINK CP450 v4.1.0cu.747_B20191224 was discovered to contain a stack buffer overflow vulnerability in the SetPortForwardRules function.EPSS 0.9%CVE-2024-34209CRITICALTOTOLINK CP450 v4.1.0cu.747_B20191224 was discovered to contain a stack buffer overflow vulnerability in the setIpPortFilterRules function.EPSS 0.9%CVE-2024-34943CRITICALTenda FH1206 V1.2.0.8(8155)_EN was discovered to contain a stack-based buffer overflow vulnerability via the page parameter at ip/goform/NatEPSS 0.9%CVE-2025-8949HIGHD-Link DIR-825 httpd ping_response.cgi get_ping_app_stat stack-based overflowEPSS 0.9%CVE-2026-91001CRITICALD-Link DI-8400 DDNS Configuration ddns.asp ddns_asp stack-based overflowEPSS 0.9%CVE-2022-43613HIGHThis vulnerability allows remote attackers to execute arbitrary code on affected installations of Corel CorelDRAW Graphics Suite 23.5.0.506.EPSS 0.9%CVE-2025-6887HIGHTenda AC5 SetSysTimeCfg stack-based overflowEPSS 0.9%CVE-2020-37161HIGHWedding Slideshow Studio 1.36 - 'Name' Buffer OverflowEPSS 0.9%CVE-2023-49424HIGHTenda AX12 V22.03.01.46 was discovered to contain a stack overflow via the list parameter at /goform/SetVirtualServerCfg.EPSS 0.9%CVE-2018-25427CRITICALArm Whois 3.11 Buffer Overflow via SEH OverwriteEPSS 0.9%CVE-2026-29972HIGHnanoMODBUS through v1.22.0 has a stack-based buffer overflow in recv_read_registers_res() in nanomodbus.c. When a client calls nmbs_read_holEPSS 0.9%CVE-2023-45924CRITICALlibglxproto.c in OpenGL libglvnd bb06db5a was discovered to contain a segmentation violation via the function glXGetDrawableScreen(). NOTE: EPSS 0.9%CVE-2025-45428CRITICALIn Tenda ac9 v1.0 with firmware V15.03.05.14_multi, the rebootTime parameter of /goform/SetSysAutoRebbotCfg has a stack overflow vulnerabiliEPSS 0.9%CVE-2025-45427CRITICALIn Tenda AC9 v1.0 with firmware V15.03.05.14_multi, the security parameter of /goform/WifiBasicSet has a stack overflow vulnerability, whichEPSS 0.9%CVE-2026-45798HIGHWazuh: Pre-auth stack-buffer-overflow in compare_wazuh_versions reachable from wazuh-authd (TCP/1515) via crafted enrollment V: fieldEPSS 0.9%CVE-2021-34587MEDIUMBender Charge Controller: Long URL could lead to webserver crashEPSS 0.9%CVE-2009-20008HIGHGreen Dam 3.17 URL Processing Buffer OverflowEPSS 0.9%CVE-2026-56642HIGHMicrosoft Fabric Data Warehouse Remote Code Execution VulnerabilityEPSS 0.9%CVE-2023-32140HIGHD-Link DAP-1360 webproc var:sys_Token Heap-based Buffer Overflow Remote Code Execution VulnerabilityEPSS 0.9%