Weaknesses of type CWE-787

5,225 results

Escrita fora dos limites da memória

Ocorre quando o código escreve dados em um endereço de memória fora do intervalo alocado para uma estrutura (array, buffer, objeto). O programa não valida o tamanho ou índice antes de escrever, permitindo sobrescrever memória adjacente — causando corrupção de dados, queda da aplicação ou execução arbitrária de código.

Example

Um formulário web que copia o valor de um campo do usuário para um buffer de 64 bytes sem verificar o comprimento: se o atacante enviar 200 caracteres, a escrita invade a memória vizinha e pode sobrescrever um ponteiro de função ou variável crítica.

How to mitigate

Sempre validar tamanhos de entrada antes de copiar (usar `strncpy` em vez de `strcpy`, ou bibliotecas seguras como `bounds-checking`); usar linguagens com verificação automática de limites (Java, Rust); aplicar testes de fuzzing e análise estática de código para detectar escritas desprotegidas.

CVE-2026-25781HIGHkernel_liteos_a has an out-of-bounds write vulnerabilityEPSS 0.2%CVE-2025-39836HIGHefi: stmm: Fix incorrect buffer allocation methodEPSS 0.2%CVE-2026-59857MEDIUMVim: Out-of-bounds Write in SAL SoundfoldingEPSS 0.2%CVE-2022-41603LOWThe phones have the heap overflow, out-of-bounds read, and null pointer vulnerabilities in the fingerprint trusted application (TA).SuccessfEPSS 0.2%CVE-2022-41598LOWThe phones have the heap overflow, out-of-bounds read, and null pointer vulnerabilities in the fingerprint trusted application (TA).SuccessfEPSS 0.2%CVE-2019-25466HIGHEasy File Sharing Web Server 7.2 Local SEH OverflowEPSS 0.2%CVE-2025-39917HIGHbpf: Fix out-of-bounds dynptr write in bpf_crypto_cryptEPSS 0.2%CVE-2019-25607HIGHAxessh 4.2 Local Stack-based Buffer Overflow via Log File NameEPSS 0.2%CVE-2022-41595LOWThe phones have the heap overflow, out-of-bounds read, and null pointer vulnerabilities in the fingerprint trusted application (TA).SuccessfEPSS 0.2%CVE-2026-58304MEDIUMOut-of-bounds read, Out-of-bounds write vulnerability in Samsung Open Source Escargot allows Overflow Buffers. This issue affects Escargot:EPSS 0.2%CVE-2022-41593LOWThe phones have the heap overflow, out-of-bounds read, and null pointer vulnerabilities in the fingerprint trusted application (TA).SuccessfEPSS 0.2%CVE-2018-9340HIGHIn ResStringPool::setTo of ResourceTypes.cpp, it's possible for an attacker to control the value of mStringPoolSize to be out of bounds, cauEPSS 0.2%CVE-2023-53320HIGHscsi: mpi3mr: Fix issues in mpi3mr_get_all_tgt_info()EPSS 0.2%CVE-2022-41592LOWThe phones have the heap overflow, out-of-bounds read, and null pointer vulnerabilities in the fingerprint trusted application (TA).SuccessfEPSS 0.2%CVE-2026-65609LOWOut-of-bounds write in nnnEPSS 0.1%CVE-2026-47773HIGHArduinoBLE: Memory corruption via malformed ATT write requestEPSS 0.1%CVE-2016-20047HIGHEKG Gadu 1.9 Local Buffer Overflow via Username ParameterEPSS 0.1%CVE-2026-88049HIGHTesseract: Heap out-of-bounds write in LSTM::Forward via na_/gate-matrix dimension mismatchEPSS 0.1%CVE-2025-22832MEDIUMBuffer Overflow in NTFS when parsing the ATTRIBUTE_LISTEPSS 0.1%CVE-2026-88050MEDIUMTesseract: Out-of-bounds write in UnicharCompress via unvalidated recoder code valuesEPSS 0.1%