Weaknesses of type CWE-121

3,831 results

Estouro de buffer na pilha

Ocorre quando um programa escreve mais dados em um buffer alocado na pilha do que ele pode conter, sobrescrevendo dados adjacentes (variáveis, endereços de retorno, ponteiros). Um atacante pode explorar isso para executar código arbitrário ou causar travamento.

Example

Um programa lê uma string do usuário com gets() ou strcpy() sem validar o tamanho, copiando 500 bytes para um buffer de 64 bytes. O excesso sobrescreve o endereço de retorno da função, permitindo desviar a execução para código malicioso.

How to mitigate

Use funções seguras (strncpy, fgets, snprintf) que aceitam limite de bytes; implemente verificações de limites explícitas no código; ative proteções do compilador/SO (stack canaries, DEP/NX, ASLR); use linguagens com verificação automática de limites ou ferramentas de análise estática.

CVE-2023-50734CRITICALA vulnerability has been identified in the PostScript interpreter in various Lexmark devices.EPSS 0.8%CVE-2026-6643HIGHA stack-based buffer overflow vulnerability in the VPN Clients on the ADMEPSS 0.8%CVE-2023-48264HIGHThe vulnerability allows an unauthenticated remote attacker to perform a Denial-of-Service (DoS) attack or, possibly, obtain Remote Code ExeEPSS 0.8%CVE-2023-48262HIGHThe vulnerability allows an unauthenticated remote attacker to perform a Denial-of-Service (DoS) attack or, possibly, obtain Remote Code ExeEPSS 0.8%CVE-2023-48265HIGHThe vulnerability allows an unauthenticated remote attacker to perform a Denial-of-Service (DoS) attack or, possibly, obtain Remote Code ExeEPSS 0.8%CVE-2023-48266HIGHThe vulnerability allows an unauthenticated remote attacker to perform a Denial-of-Service (DoS) attack or, possibly, obtain Remote Code ExeEPSS 0.8%CVE-2023-50362MEDIUMQTS, QuTS heroEPSS 0.8%CVE-2023-50361MEDIUMQTS, QuTS heroEPSS 0.8%CVE-2026-86318MEDIUMjava-json-tools json-patch JsonMergePatchDeserializer.java JsonMergePatch.fromJson stack-based overflowEPSS 0.8%CVE-2024-0962MEDIUMobgm libcoap Configuration File coap_oscore.c get_split_entry stack-based overflowEPSS 0.8%CVE-2023-44445HIGHNETGEAR CAX30 SSO Stack-based Buffer Overflow Remote Code Execution VulnerabilityEPSS 0.8%CVE-2024-23933MEDIUMSony XAV-AX5500 CarPlay TLV Stack-based Buffer Overflow Remote Code Execution VulnerabilityEPSS 0.8%CVE-2025-25745HIGHD-Link DIR-853 A1 FW1.20B07 was discovered to contain a stack-based buffer overflow vulnerability via the Password parameter in the SetQuickEPSS 0.8%CVE-2023-41184MEDIUMTP-Link Tapo C210 ActiveCells Stack-based Buffer Overflow Remote Code Execution VulnerabilityEPSS 0.8%CVE-2024-12352MEDIUMTOTOLINK EX1800T cstecgi.cgi sub_40662C stack-based overflowEPSS 0.8%CVE-2024-28535HIGHTenda AC18 V15.03.05.05 has a stack overflow vulnerability in the mitInterface parameter of fromAddressNat function.EPSS 0.8%CVE-2026-16877HIGHVulnerabilities in IBM AIX and PowerVM VIOSEPSS 0.8%CVE-2022-25949—The kernel mode driver kwatch3 of KINGSOFT Internet Security 9 Plus Version 2010.06.23.247 fails to properly handle crafted inputs, leading EPSS 0.8%CVE-2026-16911HIGHVulnerabilities in IBM AIX and PowerVM VIOSEPSS 0.8%CVE-2025-41426CRITICALVertiv Liebert RDU101 and UNITY Stack-based Buffer OverflowEPSS 0.8%