Fallos del tipo CWE-121

3834 resultados

Estouro de buffer na pilha

Ocorre quando código escreve dados além dos limites de um buffer alocado na pilha (stack), sobrescrevendo informações críticas como endereços de retorno ou variáveis locais. Um atacante pode explorar isso para executar código arbitrário ou causar crash da aplicação.

Ejemplo

Uma função copia uma string de entrada diretamente em um array de 64 bytes sem validar o tamanho: `char buffer[64]; strcpy(buffer, user_input);` Se o usuário enviar uma string com 200 bytes, ela sobrescreverá o endereço de retorno e pode redirecionar a execução para código malicioso.

Cómo mitigar

Use funções seguras com limite de tamanho (`strncpy`, `snprintf`), valide e sanitize entradas antes de copiar, implemente proteções em tempo de execução (stack canaries, ASLR, DEP) e considere usar linguagens com verificação de limites automática quando possível.

CVE-2026-75126MEDIUMPLANET GS-4210-16P2S V3 Stack Buffer Overflow via dispatcher.cgi Standard HandlersEPSS 0.6%CVE-2025-53009MEDIUMMaterialX Stack Overflow via Lack of MTLX XML Parsing Recursion LimitEPSS 0.6%CVE-2026-1361HIGHASDA-Soft Stack-based Buffer Overflow VulnerabilityEPSS 0.6%CVE-2026-77217MEDIUMPLANET GS-4210-16P2S V3 Stack Buffer Overflow and NULL Pointer Dereference via dispatcher.cgi RADIUS HandlersEPSS 0.6%CVE-2025-70244HIGHStack buffer overflow vulnerability in D-Link DIR-513 v1.10 via the webPage parameter to goform/formWlanSetup.EPSS 0.6%CVE-2025-70251HIGHStack buffer overflow vulnerability in D-Link DIR-513 v1.10 via the webPage parameter to goform/formWlanGuestSetup.EPSS 0.6%CVE-2026-12846CRITICALGeoVision GV-I/O Box DVRSearch buffer overflow vulnerabilities in CMD_IP_SET commandEPSS 0.6%CVE-2026-12847CRITICALGeoVision GV-I/O Box DVRSearch buffer overflow vulnerabilities in CMD_IP_SET commandEPSS 0.6%CVE-2024-51314CRITICALThe Tenda TX9 V22.03.02.20 firmware has a stack overflow vulnerability in the sub_424CE0 function of the file /goform/setMacFilterCfg.EPSS 0.6%CVE-2026-59144CRITICALData::RingBuffer::Shared versions before 0.04 for Perl allow a stack buffer overflow via an unvalidated elem_size in ring_read_seqEPSS 0.6%CVE-2026-19341HIGHUTT HiPER 1200GW pptpSrvGlobalConfig strcpy stack-based overflowEPSS 0.6%CVE-2026-12485CRITICALGeoVision GV-I/O Box DVRSearch buffer overflow vulnerabilities in CMD_IP_SET commandEPSS 0.6%CVE-2024-51311CRITICALThe Tenda TX9 V22.03.02.05 firmware has a stack overflow vulnerability in the sub_4418CC function of the file /goform/SetNetControlList.EPSS 0.6%CVE-2026-75783CRITICALTRENDnet TEW-WLC100P DHCP blobmsg netifd stack-based overflowEPSS 0.6%CVE-2024-51315CRITICALThe Tenda TX9 V22.03.02.20 firmware has a stack overflow vulnerability in the sub_425964 function of the file /goform/SetOnlineDevNameEPSS 0.6%CVE-2026-12848CRITICALGeoVision GV-I/O Box DVRSearch buffer overflow vulnerabilities in CMD_IP_SET commandEPSS 0.6%CVE-2024-51312CRITICALThe Tenda TX9 V22.03.02.20 firmware has a stack overflow vulnerability in the sub_42EEE0 function of the file /goform/SetStaticRouteCfg.EPSS 0.6%CVE-2024-51313CRITICALThe Tenda TX9 V22.03.02.20 firmware has a stack overflow vulnerability in the sub_42EA38 function of the file /goform/SetVirtualServerCfg.EPSS 0.6%CVE-2026-41509MEDIUMInteger underflow in crypto_sign_open() leads to buffer overflowEPSS 0.6%CVE-2026-40892HIGHPJSIP: Stack buffer overflow in pjsip_auth_create_digest2()EPSS 0.6%