Fallos del tipo CWE-121

3839 resultados

Estouro de buffer na pilha

Ocorre quando código escreve dados além dos limites de um buffer alocado na pilha (stack), sobrescrevendo informações críticas como endereços de retorno ou variáveis locais. Um atacante pode explorar isso para executar código arbitrário ou causar crash da aplicação.

Ejemplo

Uma função copia uma string de entrada diretamente em um array de 64 bytes sem validar o tamanho: `char buffer[64]; strcpy(buffer, user_input);` Se o usuário enviar uma string com 200 bytes, ela sobrescreverá o endereço de retorno e pode redirecionar a execução para código malicioso.

Cómo mitigar

Use funções seguras com limite de tamanho (`strncpy`, `snprintf`), valide e sanitize entradas antes de copiar, implemente proteções em tempo de execução (stack canaries, ASLR, DEP) e considere usar linguagens com verificação de limites automática quando possível.

CVE-2026-11528HIGHTenda AC18 Web Management getRebootStatus sub_45304 stack-based overflowEPSS 0.5%CVE-2026-68795HIGHMicrosoft Excel Remote Code Execution VulnerabilityEPSS 0.5%CVE-2026-81953HIGHMicrosoft Excel Remote Code Execution VulnerabilityEPSS 0.5%CVE-2026-11524HIGHTenda W20E Web Management modifyWifiFilterRules stack-based overflowEPSS 0.5%CVE-2026-11522HIGHTenda W20E setPortMirror formSetPortMirror stack-based overflowEPSS 0.5%CVE-2025-67187CRITICALA stack-based buffer overflow vulnerability was identified in TOTOLINK A950RG V4.1.2cu.5204_B20210112. The flaw exists in the setIpQosRules EPSS 0.5%CVE-2026-68817HIGHMicrosoft Excel Remote Code Execution VulnerabilityEPSS 0.5%CVE-2026-25968HIGHImageMagick has MSL attribute stack buffer overflow that leads to out of bounds write.EPSS 0.5%CVE-2026-66807HIGHMicrosoft Office Graphics Component Remote Code Execution VulnerabilityEPSS 0.5%CVE-2024-28283MEDIUMThere is stack-based buffer overflow vulnerability in pc_change_act function in Linksys E1000 router firmware version v.2.1.03 and before, lEPSS 0.5%CVE-2018-8839—Delta PMSoft versions 2.10 and prior have multiple stack-based buffer overflow vulnerabilities where a .ppm file can introduce a value largeEPSS 0.5%CVE-2018-11463—A vulnerability has been identified in SINUMERIK 808D V4.7 (All versions), SINUMERIK 808D V4.8 (All versions), SINUMERIK 828D V4.7 (All versEPSS 0.5%CVE-2025-70252HIGHAn issue was discovered in /goform/WifiWpsStart in Tenda AC6V2.0 V15.03.06.23_multi. The index and mode are controllable. If the conditions EPSS 0.5%CVE-2024-41586HIGHA stack-based Buffer Overflow vulnerability in DrayTek Vigor310 devices through 4.3.2.6 allows a remote attacker to execute arbitrary code vEPSS 0.5%CVE-2025-60571HIGHD-Link DIR600LAx FW116WWb01 was discovered to contain a buffer overflow via the curTime parameter in the function formSetQoS.EPSS 0.5%CVE-2026-10158HIGHTRENDnet TEW-432BRP formPortFw stack-based overflowEPSS 0.5%CVE-2026-80147CRITICALLantronix Autonomous Out-of-Band Devices Stack-Based Buffer Overflow via mfc eeprom writeEPSS 0.5%CVE-2023-51955MEDIUMTenda AX1803 v1.0.0.1 contains a stack overflow via the adv.iptv.stballvlans parameter in the function formSetIptv.EPSS 0.5%CVE-2025-60572HIGHD-Link DIR600L Ax FW116WWb01 was discovered to contain a buffer overflow via the curTime parameter in the function formAdvNetwork.EPSS 0.5%CVE-2026-10159HIGHTRENDnet TEW-432BRP formSysLog stack-based overflowEPSS 0.5%