Weaknesses of type CWE-787

5,212 results

Escrita fora dos limites da memória

Ocorre quando o código escreve dados em um endereço de memória fora do intervalo alocado para uma estrutura (array, buffer, objeto). O programa não valida o tamanho ou índice antes de escrever, permitindo sobrescrever memória adjacente — causando corrupção de dados, queda da aplicação ou execução arbitrária de código.

Example

Um formulário web que copia o valor de um campo do usuário para um buffer de 64 bytes sem verificar o comprimento: se o atacante enviar 200 caracteres, a escrita invade a memória vizinha e pode sobrescrever um ponteiro de função ou variável crítica.

How to mitigate

Sempre validar tamanhos de entrada antes de copiar (usar `strncpy` em vez de `strcpy`, ou bibliotecas seguras como `bounds-checking`); usar linguagens com verificação automática de limites (Java, Rust); aplicar testes de fuzzing e análise estática de código para detectar escritas desprotegidas.

CVE-2026-77118HIGHOut-of-bounds write in GraphicsMagick PCD decoderEPSS 0.2%CVE-2021-25407—A possible out of bounds write vulnerability in NPU driver prior to SMR JUN-2021 Release 1 allows arbitrary memory write.EPSS 0.2%CVE-2026-77396MEDIUMPJSIP: Heap buffer overflow in the AVI parserEPSS 0.2%CVE-2024-40810MEDIUMAn out-of-bounds write issue was addressed with improved input validation. This issue is fixed in macOS Sonoma 14.6. An app may be able to cEPSS 0.2%CVE-2022-42508MEDIUMIn ProtocolCallBuilder::BuildSendUssd of protocolcallbuilder.cpp, there is a possible out of bounds write due to a missing bounds check. ThiEPSS 0.2%CVE-2026-33850HIGHOut-of-bounds Write in WujekFoliarz DualSenseY-v2EPSS 0.2%CVE-2026-57260HIGHSecurity vulnerability in Foxit PDF Editor/Reader — U3D Adobe Mesh Decompression (Type Confusion / Invalid Pointer Dereference)EPSS 0.2%CVE-2026-88048HIGHTesseract: Heap out-of-bounds write/read in FullyConnected::Forward via layer/weight-matrix dimension mismatchEPSS 0.2%CVE-2026-86313HIGHOut-of-bounds write vulnerability in Samsung Opensource Walrus allows Overflow Buffers. This issue affects Walrus: af80e665ea49d9003695a665EPSS 0.2%CVE-2026-86901HIGHAn out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in macOS Golden Gate 27. Mounting a maliciouslEPSS 0.2%CVE-2026-55892MEDIUMVim: Out-of-bounds Write in Spell File Prefix DumpEPSS 0.2%CVE-2025-27132LOWarkcompiler_ets_runtime has an out-of-bounds write vulnerabilityEPSS 0.2%CVE-2025-22835LOWArkcompiler Ets Runtime has an out-of-bounds write vulnerabilityEPSS 0.2%CVE-2024-47137HIGHLiteos_a has an out-of-bounds Write vulnerabilityEPSS 0.2%CVE-2025-24309LOWArkcompiler Ets Runtime has an out-of-bounds write vulnerabilityEPSS 0.2%CVE-2024-47797HIGHLiteos_a has an out-of-bounds Write vulnerabilityEPSS 0.2%CVE-2026-43903HIGHOpenImageIO: SGI RLE decoder heap buffer overflow OIIO_DASSERT bounds checks are no-ops in release buildsEPSS 0.2%CVE-2026-17100HIGHPower System Out-of-bounds WriteEPSS 0.2%CVE-2024-20151MEDIUMIn Modem, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege if a maEPSS 0.2%CVE-2024-27387MEDIUMAn issue was discovered in Samsung Mobile Processor Exynos 980, Exynos 850, Exynos 1280, Exynos 1380, and Exynos 1330. In the function slsi_EPSS 0.2%