Fallos del tipo CWE-121

3825 resultados

Estouro de buffer na pilha

Ocorre quando código escreve dados além dos limites de um buffer alocado na pilha (stack), sobrescrevendo informações críticas como endereços de retorno ou variáveis locais. Um atacante pode explorar isso para executar código arbitrário ou causar crash da aplicação.

Ejemplo

Uma função copia uma string de entrada diretamente em um array de 64 bytes sem validar o tamanho: `char buffer[64]; strcpy(buffer, user_input);` Se o usuário enviar uma string com 200 bytes, ela sobrescreverá o endereço de retorno e pode redirecionar a execução para código malicioso.

Cómo mitigar

Use funções seguras com limite de tamanho (`strncpy`, `snprintf`), valide e sanitize entradas antes de copiar, implemente proteções em tempo de execução (stack canaries, ASLR, DEP) e considere usar linguagens com verificação de limites automática quando possível.

CVE-2024-8225HIGHTenda G3 SetSysTimeCfg formSetSysTime stack-based overflowEPSS 1.2%CVE-2019-11931—A stack-based buffer overflow could be triggered in WhatsApp by sending a specially crafted MP4 file to a WhatsApp user. The issue was preseEPSS 1.2%CVE-2020-1921—In the crypt function, we attempt to null terminate a buffer using the size of the input salt without validating that the offset is within tEPSS 1.2%CVE-2024-11047HIGHD-Link DI-8003 upgrade_filter.asp upgrade_filter_asp stack-based overflowEPSS 1.2%CVE-2024-11048HIGHD-Link DI-8003 dbsrv.asp dbsrv_asp stack-based overflowEPSS 1.2%CVE-2021-22673—The affected product is vulnerable to stack-based buffer overflow while processing over-the-air firmware updates from the CDN server, which EPSS 1.2%CVE-2022-25996HIGHA stack-based buffer overflow vulnerability exists in the confsrv addTimeGroup functionality of TCL LinkHub Mesh Wi-Fi MS1G_00_01.00_14. A sEPSS 1.2%CVE-2012-10053CRITICALSimple Web Server Connection Header Buffer OverflowEPSS 1.2%CVE-2024-27657HIGHD-Link DIR-823G A1V1.0.2B05 was discovered to contain a buffer overflow via the User-Agent parameter. This vulnerability allows attackers toEPSS 1.2%CVE-2023-49236CRITICALA stack-based buffer overflow was discovered on TRENDnet TV-IP1314PI 5.5.3 200714 devices, leading to arbitrary command execution. This occuEPSS 1.2%CVE-2024-6964HIGHTenda O3 fromDhcpSetSer stack-based overflowEPSS 1.2%CVE-2024-10282HIGHTenda RX9/RX9 Pro SetVirtualServerCfg sub_42EA38 stack-based overflowEPSS 1.2%CVE-2024-47607HIGHGHSL-2024-116: Stack-buffer overflow in gst_opus_dec_parse_headerEPSS 1.2%CVE-2024-8231HIGHTenda O6 setPortForward fromVirtualSet stack-based overflowEPSS 1.2%CVE-2025-6369HIGHD-Link DIR-619L formdumpeasysetup stack-based overflowEPSS 1.2%CVE-2025-6374HIGHD-Link DIR-619L formSetACLFilter stack-based overflowEPSS 1.2%CVE-2023-24345HIGHD-Link N300 WI-FI Router DIR-605L v2.13B01 was discovered to contain a stack overflow via the curTime parameter at /goform/formSetWanDhcppluEPSS 1.2%CVE-2023-24346HIGHD-Link N300 WI-FI Router DIR-605L v2.13B01 was discovered to contain a stack overflow via the wan_connected parameter at /goform/formEasySetEPSS 1.2%CVE-2025-6371HIGHD-Link DIR-619L formSetEnableWizard stack-based overflowEPSS 1.2%CVE-2025-6372HIGHD-Link DIR-619L formSetWizard1 stack-based overflowEPSS 1.2%