Fallos del tipo CWE-121

3848 resultados

Estouro de buffer na pilha

Ocorre quando código escreve dados além dos limites de um buffer alocado na pilha (stack), sobrescrevendo informações críticas como endereços de retorno ou variáveis locais. Um atacante pode explorar isso para executar código arbitrário ou causar crash da aplicação.

Ejemplo

Uma função copia uma string de entrada diretamente em um array de 64 bytes sem validar o tamanho: `char buffer[64]; strcpy(buffer, user_input);` Se o usuário enviar uma string com 200 bytes, ela sobrescreverá o endereço de retorno e pode redirecionar a execução para código malicioso.

Cómo mitigar

Use funções seguras com limite de tamanho (`strncpy`, `snprintf`), valide e sanitize entradas antes de copiar, implemente proteções em tempo de execução (stack canaries, ASLR, DEP) e considere usar linguagens com verificação de limites automática quando possível.

CVE-2026-85384HIGHAuthenticated Stack-Based Buffer Overflow in RE210 AC750 Configuration ImportEPSS 0.3%CVE-2026-36777MEDIUMShenzhen Tenda Technology Co., Ltd Tenda W3 Wireless Router v1.0.0.3(2204) was discovered to contain a stack overflow in the param_1 parametEPSS 0.3%CVE-2026-0413MEDIUMBuffer overflow vulnerability in certain NETGEAR Nighthawk routersEPSS 0.3%CVE-2020-37177MEDIUMBOOTP Turbo 2.0 - Denial of Service (SEH)EPSS 0.3%CVE-2024-25391HIGHA stack buffer overflow occurs in libc/posix/ipc/mqueue.c in RT-Thread through 5.0.2.EPSS 0.3%CVE-2025-6093MEDIUMuYanki board-stm32f103rc-berial heartrate1_hal.c heartrate1_i2c_hal_write stack-based overflowEPSS 0.3%CVE-2025-6170LOWLibxml2: stack buffer overflow in xmllint interactive shell command handlingEPSS 0.3%CVE-2022-2896HIGHMeasuresoft ScadaPro Server Use After FreeEPSS 0.3%CVE-2025-45847MEDIUMALFA AIP-W512 v3.2.2.2.3 was discovered to contain an authenticated stack overflow via the targetAPMac parameter in the formWsc function.EPSS 0.3%CVE-2024-4192HIGHStack-based Buffer Overflow vulnerability in Delta Electronics CNCSoft-G2 DOPSoftEPSS 0.3%CVE-2022-3228MEDIUMUsing custom code, an attacker can write into name or description fields larger than the appropriate buffer size causing a stack-based buffeEPSS 0.3%CVE-2025-25891MEDIUMA buffer overflow vulnerability was discovered in D-Link DSL-3782 v1.01, triggered by the destination, netmask and gateway parameters. This EPSS 0.3%CVE-2025-25892MEDIUMA buffer overflow vulnerability was discovered in D-Link DSL-3782 v1.01 via the sstartip, sendip, dstartip, and dendip parameters. This vulnEPSS 0.3%CVE-2024-44386HIGHTenda FH1206 V1.2.0.8(8155)_EN contains a Buffer Overflow vulnerability via the function fromSetIpBind.EPSS 0.3%CVE-2024-40902HIGHjfs: xattr: fix buffer overflow for invalid xattrEPSS 0.3%CVE-2026-92870HIGHA stack-based buffer overflow vulnerability exists in Pgpool-II, which may allow an unauthenticated attacker to cause abnormal process termiEPSS 0.3%CVE-2025-64333HIGHSuricata is vulnerable to a stack overflow from big content-typeEPSS 0.3%CVE-2025-64331HIGHSuricata is vulnerable to a stack overflow on large file transfers with http-body-printableEPSS 0.3%CVE-2022-35867HIGHThis vulnerability allows local attackers to escalate privileges on affected installations of xhyve. An attacker must first obtain the abiliEPSS 0.3%CVE-2026-88388HIGHEspruino 2v29 (commit bffc6d0) contains a stack-based buffer overflow vulnerability in the JavaScript error stack-trace handling path on 64-EPSS 0.3%