Fallos del tipo CWE-121

3827 resultados

Estouro de buffer na pilha

Ocorre quando código escreve dados além dos limites de um buffer alocado na pilha (stack), sobrescrevendo informações críticas como endereços de retorno ou variáveis locais. Um atacante pode explorar isso para executar código arbitrário ou causar crash da aplicação.

Ejemplo

Uma função copia uma string de entrada diretamente em um array de 64 bytes sem validar o tamanho: `char buffer[64]; strcpy(buffer, user_input);` Se o usuário enviar uma string com 200 bytes, ela sobrescreverá o endereço de retorno e pode redirecionar a execução para código malicioso.

Cómo mitigar

Use funções seguras com limite de tamanho (`strncpy`, `snprintf`), valide e sanitize entradas antes de copiar, implemente proteções em tempo de execução (stack canaries, ASLR, DEP) e considere usar linguagens com verificação de limites automática quando possível.

CVE-2025-7550HIGHTenda FH1201 GstDhcpSetSer fromGstDhcpSetSer stack-based overflowEPSS 0.8%CVE-2025-7421HIGHTenda O3V2 httpd operateMacFilter fromMacFilterModify stack-based overflowEPSS 0.8%CVE-2025-7422HIGHTenda O3V2 httpd setNetworkService setAutoReboot stack-based overflowEPSS 0.8%CVE-2025-7597HIGHTenda AX1803 setMacFilterCfg formSetMacFilterCfg stack-based overflowEPSS 0.8%CVE-2025-7420HIGHTenda O3V2 httpd setWrlBasicInfo formWifiBasicSet stack-based overflowEPSS 0.8%CVE-2025-7596HIGHTenda FH1205 WifiExtraSet formWifiExtraSet stack-based overflowEPSS 0.8%CVE-2025-7416HIGHTenda O3V2 httpd setSysTimeInfo fromSysToolTime stack-based overflowEPSS 0.8%CVE-2025-7598HIGHTenda AX1803 setWifiFilterCfg formSetWifiMacFilterCfg stack-based overflowEPSS 0.8%CVE-2024-23959HIGHAutel MaxiCharger AC Elite Business C50 BLE AppChargingControl Stack-based Buffer Overflow Remote Code Execution VulnerabilityEPSS 0.8%CVE-2024-33835CRITICALTenda AC18 V15.03.05.05 has a stack overflow vulnerability in the remoteIp parameter from formSetSafeWanWebMan function.EPSS 0.8%CVE-2023-36950HIGHTOTOLINK X5000R V9.1.0u.6118_B20201102 and TOTOLINK A7000R V9.1.0u.6115_B20201022 was discovered to contain a stack overflow via the http_hoEPSS 0.8%CVE-2023-36947HIGHTOTOLINK X5000R V9.1.0u.6118_B20201102 and TOTOLINK A7000R V9.1.0u.6115_B20201022 was discovered to contain a stack overflow via the File paEPSS 0.8%CVE-2025-7528HIGHTenda FH1202 GstDhcpSetSer fromGstDhcpSetSer stack-based overflowEPSS 0.8%CVE-2025-7527HIGHTenda FH1202 AdvSetWan fromAdvSetWan stack-based overflowEPSS 0.8%CVE-2025-7529HIGHTenda FH1202 Natlimit fromNatlimit stack-based overflowEPSS 0.8%CVE-2025-7530HIGHTenda FH1202 PPTPDClient fromPptpUserAdd stack-based overflowEPSS 0.8%CVE-2021-36193MEDIUMMultiple stack-based buffer overflows in the command line interpreter of FortiWeb before 6.4.2 may allow an authenticated attacker to achievEPSS 0.8%CVE-2026-20797MEDIUMCopeland XWEB and XWEB Pro Stack-based Buffer OverflowEPSS 0.8%CVE-2025-8060HIGHTenda AC23 httpd setMacFilterCfg sub_46C940 stack-based overflowEPSS 0.8%CVE-2023-27355HIGHThis vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of Sonos One Speaker 70.3-35220. AuEPSS 0.8%