Fallos del tipo CWE-121

3834 resultados

Estouro de buffer na pilha

Ocorre quando código escreve dados além dos limites de um buffer alocado na pilha (stack), sobrescrevendo informações críticas como endereços de retorno ou variáveis locais. Um atacante pode explorar isso para executar código arbitrário ou causar crash da aplicação.

Ejemplo

Uma função copia uma string de entrada diretamente em um array de 64 bytes sem validar o tamanho: `char buffer[64]; strcpy(buffer, user_input);` Se o usuário enviar uma string com 200 bytes, ela sobrescreverá o endereço de retorno e pode redirecionar a execução para código malicioso.

Cómo mitigar

Use funções seguras com limite de tamanho (`strncpy`, `snprintf`), valide e sanitize entradas antes de copiar, implemente proteções em tempo de execução (stack canaries, ASLR, DEP) e considere usar linguagens com verificação de limites automática quando possível.

CVE-2024-40535CRITICALShenzhen Libituo Technology Co., Ltd LBT-T300-T400 v3.2 was discovered to contain a stack overflow via the apn_name_3g parameter in the confEPSS 0.6%CVE-2024-38246HIGHWin32k Elevation of Privilege VulnerabilityEPSS 0.6%CVE-2024-41881HIGHSDoP versions prior to 1.11 fails to handle appropriately some parameters inside the input data, resulting in a stack-based buffer overflow EPSS 0.6%CVE-2024-28924MEDIUMSecure Boot Security Feature Bypass VulnerabilityEPSS 0.6%CVE-2026-42996CRITICALJS8Call through 2.3.1 and JS8Call-improved before 3.0 have a stack-based buffer overflow via a radio transmission of @APRSIS GRID followed bEPSS 0.6%CVE-2026-44634HIGHStack buffer overflows in SimpleBLEEPSS 0.6%CVE-2025-26382CRITICALJohnson Controls Software House iSTAR Configuration Utility (ICU) ToolEPSS 0.6%CVE-2025-70238HIGHStack buffer overflow vulnerability in D-Link DIR-513 v1.10 via the curTime parameter to goform/formSetWAN_Wizard52.EPSS 0.6%CVE-2025-70243HIGHStack buffer overflow vulnerability in D-Link DIR-513 v1.10 via the curTime parameter to goform/formSetWAN_Wizard534.EPSS 0.6%CVE-2023-28393MEDIUMA stack-based buffer overflow vulnerability exists in the tif_processing_dng_channel_count functionality of Accusoft ImageGear 20.1. A speciEPSS 0.6%CVE-2024-10918MEDIUMStack-based Buffer Overflow in libmodbus libraryEPSS 0.6%CVE-2026-26240LOWFile Station 5EPSS 0.6%CVE-2026-26241LOWFile Station 5EPSS 0.6%CVE-2022-3296HIGHStack-based Buffer Overflow in vim/vimEPSS 0.6%CVE-2023-50434CRITICALemdns_resolve_raw in emdns.c in emdns through fbd1eef calls strlen with an input that may not be '\0' terminated, leading to a stack-based bEPSS 0.6%CVE-2026-51603HIGHA stack-based buffer overflow vulnerability in the RTSP service of Tenda CP3 V3.0 (firmware V31.1.9.91) allows an unauthenticated remote attEPSS 0.6%CVE-2024-34308HIGHTOTOLINK LR350 V9.3.5u.6369_B20220309 was discovered to contain a stack overflow via the password parameter in the function urldecode.EPSS 0.6%CVE-2024-34171HIGHFuji Electric Monitouch V-SFT Stack-Based Buffer OverflowEPSS 0.6%CVE-2026-51602HIGHA stack-based buffer overflow vulnerability in the RTSP service of Tenda CP3 V3.0 (firmware V31.1.9.91) allows an unauthenticated remote attEPSS 0.6%CVE-2025-29387HIGHIn Tenda AC9 v1.0 V15.03.05.14_multi, the wanSpeed parameter of /goform/AdvSetMacMtuWan has a stack overflow vulnerability, which can lead tEPSS 0.6%