Fallos del tipo CWE-121

3851 resultados

Estouro de buffer na pilha

Ocorre quando código escreve dados além dos limites de um buffer alocado na pilha (stack), sobrescrevendo informações críticas como endereços de retorno ou variáveis locais. Um atacante pode explorar isso para executar código arbitrário ou causar crash da aplicação.

Ejemplo

Uma função copia uma string de entrada diretamente em um array de 64 bytes sem validar o tamanho: `char buffer[64]; strcpy(buffer, user_input);` Se o usuário enviar uma string com 200 bytes, ela sobrescreverá o endereço de retorno e pode redirecionar a execução para código malicioso.

Cómo mitigar

Use funções seguras com limite de tamanho (`strncpy`, `snprintf`), valide e sanitize entradas antes de copiar, implemente proteções em tempo de execução (stack canaries, ASLR, DEP) e considere usar linguagens com verificação de limites automática quando possível.

CVE-2026-75421MEDIUMaria2 <=1.37.0 has a stack-buffer-underflow vulnerability in the IOFile::getLine() function.EPSS 0.2%CVE-2025-11918HIGHRockwell Automation Arena® Simulation Stack-Based Buffer Overflow VulnerabilityEPSS 0.2%CVE-2026-34464HIGHSandboxie-Plus NamedPipeServer OpenHandler stack overflow via unterminated server fieldEPSS 0.2%CVE-2026-44412HIGHA vulnerability has been identified in Solid Edge SE2026 (All versions < V226.0 Update 5). The affected applications contain a stack based oEPSS 0.2%CVE-2026-93433MEDIUMLibstoragemgmt: libstoragemgmt: denial of service via stack buffer overflow in scsi vpd page parsingEPSS 0.2%CVE-2026-28494HIGHImageMagick affected by stack corruption through long morphology kernel names or arraysEPSS 0.2%CVE-2026-34461HIGHSandboxie-Plus SbieIniServer RunSbieCtrl stack buffer overflow allows local privilege escalationEPSS 0.2%CVE-2026-34462HIGHSandboxie-Plus ProcessServer boxname stack buffer overflows via unterminated wide string copyEPSS 0.2%CVE-2026-59086HIGHA vulnerability has been identified in Simcenter Femap (All versions < V2606), Simcenter Nastran (All versions < V2606). The affected applicEPSS 0.2%CVE-2026-34459HIGHSandboxie-Plus sandbox escape via uninitialized memory leak and stack overflow in GetRawInputDeviceInfoSlaveEPSS 0.2%CVE-2026-40528LOWOpenSC < 0.27.0 Buffer Overrun in do_key_value() via profile.cEPSS 0.2%CVE-2026-94953HIGHA stack-based buffer overflow vulnerability exists in the web management interface of TOTOLINK N150RT (NTR150) firmware V3.4.0-B20201030. ItEPSS 0.2%CVE-2026-5713MEDIUMOut-of-bounds read/write during remote profiling and asyncio process introspection when connecting to malicious targetEPSS 0.2%CVE-2026-30929HIGHImageMagick has a stack buffer overflow in MagnifyImageEPSS 0.2%CVE-2026-94954HIGHA stack-based buffer overflow vulnerability exists in the web management interface of TOTOLINK N150RT (NTR150) firmware V3.4.0-B20201030. ItEPSS 0.2%CVE-2020-37221HIGHAtomic Alarm Clock 6.3 Stack Overflow via SEH UnicodeEPSS 0.2%CVE-2019-25331HIGHAVS Audio Converter 9.1 - 'Exit folder' Buffer OverflowEPSS 0.2%CVE-2026-41434LOWOP-TEE has unbounded recursion in sanitize_client_object()EPSS 0.2%CVE-2025-15013MEDIUMfloooh sokol sokol_gfx.h _sg_validate_pipeline_desc stack-based overflowEPSS 0.1%CVE-2026-42050MEDIUMImageMagick: Stack buffer overflow in XTileImageEPSS 0.1%