Fallos del tipo CWE-121

3825 resultados

Estouro de buffer na pilha

Ocorre quando código escreve dados além dos limites de um buffer alocado na pilha (stack), sobrescrevendo informações críticas como endereços de retorno ou variáveis locais. Um atacante pode explorar isso para executar código arbitrário ou causar crash da aplicação.

Ejemplo

Uma função copia uma string de entrada diretamente em um array de 64 bytes sem validar o tamanho: `char buffer[64]; strcpy(buffer, user_input);` Se o usuário enviar uma string com 200 bytes, ela sobrescreverá o endereço de retorno e pode redirecionar a execução para código malicioso.

Cómo mitigar

Use funções seguras com limite de tamanho (`strncpy`, `snprintf`), valide e sanitize entradas antes de copiar, implemente proteções em tempo de execução (stack canaries, ASLR, DEP) e considere usar linguagens com verificação de limites automática quando possível.

CVE-2023-34306HIGHAshlar-Vellum Graphite VC6 File Parsing Stack-based Buffer Overflow Remote Code Execution VulnerabilityEPSS 0.9%CVE-2025-13189HIGHD-Link DIR-816L gena.cgi genacgi_main stack-based overflowEPSS 0.9%CVE-2023-34285HIGHNETGEAR RAX30 cmsCli_authenticate Stack-based Buffer Overflow Remote Code Execution VulnerabilityEPSS 0.9%CVE-2024-0931MEDIUMTenda AC10U saveParentControlInfo stack-based overflowEPSS 0.9%CVE-2024-0932MEDIUMTenda AC10U setSmartPowerManagement stack-based overflowEPSS 0.9%CVE-2025-6886HIGHTenda AC5 openSchedWifi stack-based overflowEPSS 0.9%CVE-2024-0922MEDIUMTenda AC10U formQuickIndex stack-based overflowEPSS 0.9%CVE-2023-48270HIGHA stack-based buffer overflow vulnerability exists in the boa formDnsv6 functionality of Realtek rtl819x Jungle SDK v3.4.11. A specially craEPSS 0.9%CVE-2023-49073HIGHA stack-based buffer overflow vulnerability exists in the boa formFilter functionality of Realtek rtl819x Jungle SDK v3.4.11. A specially crEPSS 0.9%CVE-2024-0923MEDIUMTenda AC10U formSetDeviceName stack-based overflowEPSS 0.9%CVE-2023-49595HIGHA stack-based buffer overflow vulnerability exists in the boa rollback_control_code functionality of Realtek rtl819x Jungle SDK v3.4.11. A sEPSS 0.9%CVE-2022-21201HIGHA stack-based buffer overflow vulnerability exists in the confers ucloud_add_node_new functionality of TCL LinkHub Mesh Wi-Fi MS1G_00_01.00_EPSS 0.9%CVE-2026-0791HIGHALGO 8180 IP Audio Alerter SIP INVITE Replaces Stack-based Buffer Overflow Remote Code Execution VulnerabilityEPSS 0.9%CVE-2025-2263CRITICALSantesoft Sante PACS Server Stack-based Buffer OverflowEPSS 0.9%CVE-2024-31079MEDIUMNGINX HTTP/3 QUIC vulnerabilityEPSS 0.9%CVE-2020-12820MEDIUMUnder non-default configuration, a stack-based buffer overflow in FortiOS version 6.0.10 and below, version 5.6.12 and below may allow a remEPSS 0.9%CVE-2026-5605HIGHTenda CH22 WrlExtraSet formWrlExtraSet stack-based overflowEPSS 0.9%CVE-2026-5604HIGHTenda CH22 Parameter CertLocalPrecreate formCertLocalPrecreate stack-based overflowEPSS 0.9%CVE-2023-28703HIGHASUS RT-AC86U - Buffer OverflowEPSS 0.9%CVE-2025-10779HIGHD-Link DCS-935L HNAP1 sub_402280 stack-based overflowEPSS 0.9%