Fallos del tipo CWE-121

3848 resultados

Estouro de buffer na pilha

Ocorre quando código escreve dados além dos limites de um buffer alocado na pilha (stack), sobrescrevendo informações críticas como endereços de retorno ou variáveis locais. Um atacante pode explorar isso para executar código arbitrário ou causar crash da aplicação.

Ejemplo

Uma função copia uma string de entrada diretamente em um array de 64 bytes sem validar o tamanho: `char buffer[64]; strcpy(buffer, user_input);` Se o usuário enviar uma string com 200 bytes, ela sobrescreverá o endereço de retorno e pode redirecionar a execução para código malicioso.

Cómo mitigar

Use funções seguras com limite de tamanho (`strncpy`, `snprintf`), valide e sanitize entradas antes de copiar, implemente proteções em tempo de execução (stack canaries, ASLR, DEP) e considere usar linguagens com verificação de limites automática quando possível.

CVE-2026-81738LOWOpenVPN 2.5.0 through 2.7.6 on Windows using the tap-windows6 driver allows attackers to trigger an out-of-bounds write via crafted DOMAIN-SEPSS 0.3%CVE-2026-6791MEDIUMPotential stack-based buffer clash during tilde expansion in wordexpEPSS 0.3%CVE-2025-55117MEDIUMBMC Control-M/Agent buffer overflow in SSL/TLS communicationEPSS 0.3%CVE-2023-6693MEDIUMQemu: virtio-net: stack buffer overflow in virtio_net_flush_tx()EPSS 0.3%CVE-2025-1164MEDIUMcode-projects Police FIR Record Management System Add Record stack-based overflowEPSS 0.3%CVE-2024-41590HIGHSeveral CGI endpoints are vulnerable to buffer overflows, by authenticated users, because of missing bounds checking on parameters passed thEPSS 0.3%CVE-2025-28344HIGHstriso-control-firmware 54c9722 is vulnerable to Buffer Overflow in function AuxJack.EPSS 0.3%CVE-2025-28343HIGHstriso-control-firmware 54c9722 is vulnerable to Buffer Overflow in function ThreadReadButtons.EPSS 0.3%CVE-2024-37029HIGHFuji Electric Tellus Lite V-Simulator Stack-based Buffer OverflowEPSS 0.3%CVE-2025-8653HIGHKenwood DMX958XR JKRadioService Stack-based Buffer Overflow Remote Code Execution VulnerabilityEPSS 0.3%CVE-2019-25330MEDIUMSurfOffline Professional 2.2.0.103 - 'Project Name' Denial of Service (SEH)EPSS 0.3%CVE-2019-25328MEDIUMXnConvert 1.82 - Denial of ServiceEPSS 0.3%CVE-2026-32743MEDIUMPX4 Autopilot: Stack-based Buffer Overflow via Oversized Path Input in MAVLink Log Request HandlingEPSS 0.3%CVE-2025-45862MEDIUMTOTOLINK A3002R v4.0.0-B20230531.1404 was discovered to contain a buffer overflow via the interfacenameds parameter in the formDhcpv6s interEPSS 0.3%CVE-2026-62655MEDIUMA DoS vulnerability due to stack overflow exists in certain NETGEAR Orbi modelsEPSS 0.3%CVE-2025-1187MEDIUMcode-projects Police FIR Record Management System Delete Record stack-based overflowEPSS 0.3%CVE-2026-12200MEDIUMRitlabs TinyWeb Server Header libeay32.dll.html stack-based overflowEPSS 0.3%CVE-2024-35576MEDIUMTenda AX1806 v1.0.0.1 contains a stack overflow via the iptv.stb.port parameter in the function formSetIptv.EPSS 0.3%CVE-2026-85384HIGHAuthenticated Stack-Based Buffer Overflow in RE210 AC750 Configuration ImportEPSS 0.3%CVE-2025-54617MEDIUMStack-based buffer overflow vulnerability in the dms_fwk module. Impact: Successful exploitation of this vulnerability can cause RCE.EPSS 0.3%