Weaknesses of type CWE-121

3,828 results

Estouro de buffer na pilha

Ocorre quando um programa escreve mais dados em um buffer alocado na pilha do que ele pode conter, sobrescrevendo dados adjacentes (variáveis, endereços de retorno, ponteiros). Um atacante pode explorar isso para executar código arbitrário ou causar travamento.

Example

Um programa lê uma string do usuário com gets() ou strcpy() sem validar o tamanho, copiando 500 bytes para um buffer de 64 bytes. O excesso sobrescreve o endereço de retorno da função, permitindo desviar a execução para código malicioso.

How to mitigate

Use funções seguras (strncpy, fgets, snprintf) que aceitam limite de bytes; implemente verificações de limites explícitas no código; ative proteções do compilador/SO (stack canaries, DEP/NX, ASLR); use linguagens com verificação automática de limites ou ferramentas de análise estática.

CVE-2023-39277— SonicOS post-authentication stack-based buffer overflow vulnerability in the sonicflow.csv and appflowsessions.csv URL endpoints leads to aEPSS 0.8%CVE-2023-39278—SonicOS post-authentication user assertion failure leads to Stack-Based Buffer Overflow vulnerability via main.cgi leads to a firewall crashEPSS 0.8%CVE-2023-41712—SonicOS post-authentication Stack-Based Buffer Overflow Vulnerability in the SSL VPN plainprefs.exp URL endpoint leads to a firewall crash.EPSS 0.8%CVE-2023-39279—SonicOS post-authentication Stack-Based Buffer Overflow vulnerability in the getPacketReplayData.json URL endpoint leads to a firewall crashEPSS 0.8%CVE-2023-39280—SonicOS p ost-authentication Stack-Based Buffer Overflow vulnerability in the ssoStats-s.xml, ssoStats-s.wri URL endpoints leads to a firewEPSS 0.8%CVE-2023-39276— SonicOS post-authentication stack-based buffer overflow vulnerability in the getBookmarkList.json URL endpoint leads to a firewall crash. EPSS 0.8%CVE-2025-3266MEDIUMqinguoyi TinyWebServer http_conn.cpp stack-based overflowEPSS 0.8%CVE-2026-45538CRITICALOpenSIPS: Stack Buffer Overflow in sip_to_json() Header Name CopyEPSS 0.8%CVE-2026-16885CRITICALVulnerabilities in IBM AIX and PowerVM VIOSEPSS 0.8%CVE-2026-41565HIGHCryptX versions before 0.088_001 for Perl have a stack buffer overflow in four AEAD decrypt_verify helpersEPSS 0.8%CVE-2025-11123HIGHTenda AC18 saveAutoQos stack-based overflowEPSS 0.8%CVE-2026-90779HIGHSIPp through 3.7.7 Stack Buffer Overflow via createAuthHeader Algorithm ParameterEPSS 0.8%CVE-2025-11122HIGHTenda AC18 WizardHandle stack-based overflowEPSS 0.8%CVE-2026-16872CRITICALVulnerabilities in IBM AIX and PowerVM VIOSEPSS 0.8%CVE-2025-11526HIGHTenda AC7 WifiMacFilterSet stack-based overflowEPSS 0.8%CVE-2024-41882MEDIUMStack based buffer overflowEPSS 0.8%CVE-2025-6566MEDIUMoatpp Oat++ Deserializer.cpp deserializeArray stack-based overflowEPSS 0.8%CVE-2025-12214HIGHTenda O3 sysAutoReboot GetValue stack-based overflowEPSS 0.8%CVE-2025-11387HIGHTenda AC15 fast_setting_pppoe_set stack-based overflowEPSS 0.8%CVE-2025-11325HIGHTenda AC18 fast_setting_pppoe_set stack-based overflowEPSS 0.8%