Weaknesses of type CWE-787

5,225 results

Escrita fora dos limites da memória

Ocorre quando o código escreve dados em um endereço de memória fora do intervalo alocado para uma estrutura (array, buffer, objeto). O programa não valida o tamanho ou índice antes de escrever, permitindo sobrescrever memória adjacente — causando corrupção de dados, queda da aplicação ou execução arbitrária de código.

Example

Um formulário web que copia o valor de um campo do usuário para um buffer de 64 bytes sem verificar o comprimento: se o atacante enviar 200 caracteres, a escrita invade a memória vizinha e pode sobrescrever um ponteiro de função ou variável crítica.

How to mitigate

Sempre validar tamanhos de entrada antes de copiar (usar `strncpy` em vez de `strcpy`, ou bibliotecas seguras como `bounds-checking`); usar linguagens com verificação automática de limites (Java, Rust); aplicar testes de fuzzing e análise estática de código para detectar escritas desprotegidas.

CVE-2023-47252MEDIUMAn issue was discovered in PnpSmm in Insyde InsydeH2O with kernel 5.0 through 5.6. There is a possible out-of-bounds access in the SMM commuEPSS 0.1%CVE-2026-46145HIGHRDMA/mana: Validate rx_hash_key_lenEPSS 0.1%CVE-2023-20513LOWAn insufficient bounds check in PMFW (Power Management Firmware) may allow an attacker to utilize a malicious VF (virtualization function) tEPSS 0.1%CVE-2025-24304LOWarkcompiler_ets_runtime has an out-of-bounds write vulnerabilityEPSS 0.1%CVE-2024-34776LOWOut-of-bounds write in some Intel(R) SGX SDK software may allow an authenticated user to potentially enable escalation of privilege via locaEPSS 0.1%CVE-2016-20039HIGHMulti Emulator Super System 0.154-3.1 Buffer OverflowEPSS 0.1%CVE-2025-65001HIGHFujitsu fbiosdrv.sys before 2.5.0.0 allows an attacker to potentially affect system confidentiality, integrity, and availability.EPSS 0.1%CVE-2026-10587MEDIUMA potential out-of-bounds write vulnerability could allow a local privileged attacker to modify power management settings in System ManagemeEPSS 0.1%CVE-2019-25604HIGHDVDXPlayer Pro 5.5 Local Buffer Overflow with SEHEPSS 0.1%CVE-2026-21349HIGHLightroom Desktop | Out-of-bounds Write (CWE-787)EPSS 0.1%CVE-2026-78547MEDIUMOut-of-Bounds WriteEPSS 0.1%CVE-2026-21341HIGHSubstance3D - Stager | Out-of-bounds Write (CWE-787)EPSS 0.1%CVE-2026-21346HIGHBridge | Out-of-bounds Write (CWE-787)EPSS 0.1%CVE-2026-61389HIGHAutomationDirect Productivity Suite Out-of-bounds WriteEPSS 0.1%CVE-2025-39888HIGHfuse: Block access to folio overlimitEPSS 0.1%CVE-2025-7004HIGHAvast antivirus heap buffer OOB write when scanning a malformed PE fileEPSS 0.1%CVE-2025-11266MEDIUMGrassroots DICOM (GDCM) Out-of-bounds WriteEPSS 0.1%CVE-2026-47511HIGHNVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer, where a user could cause an out-of-boundsEPSS 0.1%CVE-2019-25659MEDIUMASPRunner Professional 6.0.766 Local Buffer Overflow DoSEPSS 0.1%CVE-2026-47501HIGHNVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer where a user could cause an out-of-bounds write by supEPSS 0.1%