Fallos del tipo CWE-121

3825 resultados

Estouro de buffer na pilha

Ocorre quando código escreve dados além dos limites de um buffer alocado na pilha (stack), sobrescrevendo informações críticas como endereços de retorno ou variáveis locais. Um atacante pode explorar isso para executar código arbitrário ou causar crash da aplicação.

Ejemplo

Uma função copia uma string de entrada diretamente em um array de 64 bytes sem validar o tamanho: `char buffer[64]; strcpy(buffer, user_input);` Se o usuário enviar uma string com 200 bytes, ela sobrescreverá o endereço de retorno e pode redirecionar a execução para código malicioso.

Cómo mitigar

Use funções seguras com limite de tamanho (`strncpy`, `snprintf`), valide e sanitize entradas antes de copiar, implemente proteções em tempo de execução (stack canaries, ASLR, DEP) e considere usar linguagens com verificação de limites automática quando possível.

CVE-2023-51627HIGHD-Link DCS-8300LHV2 ONVIF Duration Stack-Based Buffer Overflow Remote Code Execution VulnerabilityEPSS 1.2%CVE-2023-51628HIGHD-Link DCS-8300LHV2 ONVIF SetHostName Stack-Based Buffer Overflow Remote Code Execution VulnerabilityEPSS 1.2%CVE-2023-32136HIGHD-Link DAP-1360 webproc var:menu Stack-based Buffer Overflow Remote Code Execution VulnerabilityEPSS 1.2%CVE-2021-21540MEDIUMDell EMC iDRAC9 versions prior to 4.40.00.00 contain a stack-based overflow vulnerability. A remote authenticated attacker could potentiallyEPSS 1.2%CVE-2021-22666—Fatek FvDesigner Version 1.5.76 and prior is vulnerable to a stack-based buffer overflow while project files are being processed, allowing aEPSS 1.2%CVE-2021-26635HIGHBandisoft ARK Library buffer overflow vulnerabilityEPSS 1.2%CVE-2025-60694HIGHA stack-based buffer overflow exists in the validate_static_route function of the httpd binary on Linksys E1200 v2 routers (Firmware E1200_vEPSS 1.1%CVE-2024-0575HIGHTotolink LR1200GB cstecgi.cgi setTracerouteCfg stack-based overflowEPSS 1.1%CVE-2022-35299—SAP SQL Anywhere - version 17.0, and SAP IQ - version 16.1, allows an attacker to leverage logical errors in memory management to cause a meEPSS 1.1%CVE-2024-0574HIGHTotolink LR1200GB cstecgi.cgi setParentalRules stack-based overflowEPSS 1.1%CVE-2020-7002—Delta Industrial Automation CNCSoft ScreenEditor, v1.00.96 and prior. Multiple stack-based buffer overflows can be exploited when a valid usEPSS 1.1%CVE-2025-2369HIGHTOTOLINK EX1800T cstecgi.cgi setPasswordCfg stack-based overflowEPSS 1.1%CVE-2025-2370HIGHTOTOLINK EX1800T cstecgi.cgi setWiFiExtenderConfig stack-based overflowEPSS 1.1%CVE-2024-51979HIGHAuthenticated stack based buffer overflow affecting multiple models from Brother Industries, Ltd, FUJIFILM Business Innovation, Ricoh, and Konica Minolta, Inc.EPSS 1.1%CVE-2023-0852CRITICALBuffer overflow in the Address Book of Mobile Device function of Office / Small Office Multifunction Printers and Laser Printers(*) which maEPSS 1.1%CVE-2023-0856CRITICALBuffer overflow in IPP sides attribute process of Office / Small Office Multifunction Printers and Laser Printers(*) which may allow an attaEPSS 1.1%CVE-2023-0855CRITICALBuffer overflow in IPP number-up attribute process of Office / Small Office Multifunction Printers and Laser Printers(*) which may allow an EPSS 1.1%CVE-2024-31469CRITICALThere are buffer overflow vulnerabilities in the underlying Central Communications service that could lead to unauthenticated remote code exEPSS 1.1%CVE-2024-31467CRITICALUnauthenticated Buffer Overflow Vulnerabilities in CLI Service Accessed by the PAPI ProtocolEPSS 1.1%CVE-2024-31468CRITICALThere are buffer overflow vulnerabilities in the underlying Central Communications service that could lead to unauthenticated remote code exEPSS 1.1%