Fallos del tipo CWE-121

3839 resultados

Estouro de buffer na pilha

Ocorre quando código escreve dados além dos limites de um buffer alocado na pilha (stack), sobrescrevendo informações críticas como endereços de retorno ou variáveis locais. Um atacante pode explorar isso para executar código arbitrário ou causar crash da aplicação.

Ejemplo

Uma função copia uma string de entrada diretamente em um array de 64 bytes sem validar o tamanho: `char buffer[64]; strcpy(buffer, user_input);` Se o usuário enviar uma string com 200 bytes, ela sobrescreverá o endereço de retorno e pode redirecionar a execução para código malicioso.

Cómo mitigar

Use funções seguras com limite de tamanho (`strncpy`, `snprintf`), valide e sanitize entradas antes de copiar, implemente proteções em tempo de execução (stack canaries, ASLR, DEP) e considere usar linguagens com verificação de limites automática quando possível.

CVE-2026-80147CRITICALLantronix Autonomous Out-of-Band Devices Stack-Based Buffer Overflow via mfc eeprom writeEPSS 0.5%CVE-2026-10158HIGHTRENDnet TEW-432BRP formPortFw stack-based overflowEPSS 0.5%CVE-2025-60570HIGHD-Link DIR600L Ax FW116WWb01 was discovered to contain a buffer overflow via the curTime parameter in the function formLogDnsquery.EPSS 0.5%CVE-2026-20345HIGHClamAV GPT File Format Processing Memory Corruption VulnerabilityEPSS 0.5%CVE-2026-101003MEDIUMCesanta Mongoose MQTT Broker main.c fn stack-based overflowEPSS 0.5%CVE-2024-28563MEDIUMBuffer Overflow vulnerability in open source FreeImage v.3.19.0 [r1909] allows a local attacker to cause a denial of service (DoS) via the IEPSS 0.5%CVE-2026-41956HIGHBIG-IP TMM VulnerabilityEPSS 0.5%CVE-2026-57161HIGHPJSIP: Stack overflow handling Service-Route headers in a registration responseEPSS 0.5%CVE-2025-30472CRITICALCorosync through 3.1.9, if encryption is disabled or the attacker knows the encryption key, has a stack-based buffer overflow in orf_token_eEPSS 0.5%CVE-2026-40553MEDIUMStack-based buffer overflow in gawkEPSS 0.5%CVE-2026-36771HIGHShenzhen Tenda Technology Co., Ltd Tenda W3 Wireless Router v1.0.0.3(2204) was discovered to contain a stack overflow in the wl_radio parameEPSS 0.5%CVE-2026-50039HIGHStack-based Buffer Overflow in MZ Automation libIEC61850EPSS 0.5%CVE-2026-77101HIGHCommServe Stack-based Buffer OverflowEPSS 0.5%CVE-2025-28030HIGHTOTOLINK A810R V4.1.2cu.5182_B20201026 was discovered to contain a stack overflow via the startTime and endTime parameters in setParentalRulEPSS 0.5%CVE-2026-36784HIGHShenzhen Tenda Technology Co., Ltd Tenda O3 Wireless Router v1.0.0.5(4180) was discovered to contain a stack overflow in the ip parameter ofEPSS 0.5%CVE-2026-36770HIGHShenzhen Tenda Technology Co., Ltd Tenda US_W3V1.0BR v1.0.0.3 was discovered to contain a stack overflow in the Go parameter of the ask_to_rEPSS 0.5%CVE-2026-75368HIGHA stack overflow in the loadRawData function of SpaceDot AcubeSAT OBC software commit eaf90ec allows attackers to cause a Denial of Service EPSS 0.5%CVE-2025-0438HIGHStack buffer overflow in Tracing in Google Chrome prior to 132.0.6834.83 allowed a remote attacker to potentially exploit stack corruption vEPSS 0.5%CVE-2026-88406HIGHFalkorDB (Redis module) v4.20.1 to v4.20.4 was discovered to contain a stack overflow in the _ValidateUnion_Clauses function (/ast/ast_validEPSS 0.5%CVE-2026-36837HIGHTOTOLINK A3002RU V3 <= V3.0.0-B20220304.1804 was discovered to contain a stack-based buffer overflow via the hostname parameter in the formMEPSS 0.5%