Fallos del tipo CWE-121

3851 resultados

Estouro de buffer na pilha

Ocorre quando código escreve dados além dos limites de um buffer alocado na pilha (stack), sobrescrevendo informações críticas como endereços de retorno ou variáveis locais. Um atacante pode explorar isso para executar código arbitrário ou causar crash da aplicação.

Ejemplo

Uma função copia uma string de entrada diretamente em um array de 64 bytes sem validar o tamanho: `char buffer[64]; strcpy(buffer, user_input);` Se o usuário enviar uma string com 200 bytes, ela sobrescreverá o endereço de retorno e pode redirecionar a execução para código malicioso.

Cómo mitigar

Use funções seguras com limite de tamanho (`strncpy`, `snprintf`), valide e sanitize entradas antes de copiar, implemente proteções em tempo de execução (stack canaries, ASLR, DEP) e considere usar linguagens com verificação de limites automática quando possível.

CVE-2025-32766MEDIUMA stack-based buffer overflow vulnerability [CWE-121] in Fortinet FortiWeb CLI version 7.6.0 through 7.6.3 and before 7.4.8 allows a privileEPSS 0.1%CVE-2026-33452MEDIUMBuffer overflow in Windows clients prior to 14.50EPSS 0.1%CVE-2024-45542HIGHStack-based Buffer Overflow in WLAN Windows HostEPSS 0.1%CVE-2026-2069MEDIUMggml-org llama.cpp GBNF Grammar llama-grammar.cpp llama_grammar_advance_stack stack-based overflowEPSS 0.1%CVE-2026-28690MEDIUMImageMagick has a stack write buffer overflow in MNG encoderEPSS 0.1%CVE-2025-49010LOWOpenSC: Stack-buffer-overflow WRITE in GET RESPONSEEPSS 0.1%CVE-2025-45375MEDIUMDell PowerProtect Data Domain with Data Domain Operating System (DD OS) of Feature Release versions 7.7.1.0 through 8.3.0.15, LTS2025 releasEPSS 0.1%CVE-2025-43910LOWDell PowerProtect Data Domain with Data Domain Operating System (DD OS) of Feature Release versions 7.7.1.0 through 8.3.0.15, LTS2025 releasEPSS 0.1%CVE-2026-95818LOWAT_SECURE program buffer overflow via $ORIGIN processingEPSS 0.1%CVE-2026-33536MEDIUMImageMagick has an Out-of-bounds Write via InterpretImageFilenameEPSS 0.1%CVE-2025-52539HIGHA buffer overflow with Xilinx Run Time Environment may allow a local attacker to read or corrupt data from the advanced extensible interfaceEPSS 0.1%CVE-2026-10528MEDIUMOrthanc DICOM Server DCMTK FromDcmtkBridge.cpp read stack-based overflowEPSS 0.1%CVE-2026-20509MEDIUMIn Power HAL, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege if a mEPSS 0.1%CVE-2022-33260MEDIUMStack based buffer overflow in CoreEPSS 0.1%CVE-2022-39106MEDIUMIn sensor driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service in kerneEPSS 0.1%CVE-2022-39129MEDIUMIn face detect driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service in EPSS 0.1%CVE-2026-19695MEDIUMStack-based Buffer Overflow in WiresharkEPSS 0.1%CVE-2023-24854HIGHStack-based Buffer Overflow in WLAN HOSTEPSS 0.1%CVE-2025-20732MEDIUMIn wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilegEPSS 0.1%CVE-2023-28538HIGHStack-based Buffer Overflow in WIN ProductEPSS 0.1%