Fallos del tipo CWE-121

3831 resultados

Estouro de buffer na pilha

Ocorre quando código escreve dados além dos limites de um buffer alocado na pilha (stack), sobrescrevendo informações críticas como endereços de retorno ou variáveis locais. Um atacante pode explorar isso para executar código arbitrário ou causar crash da aplicação.

Ejemplo

Uma função copia uma string de entrada diretamente em um array de 64 bytes sem validar o tamanho: `char buffer[64]; strcpy(buffer, user_input);` Se o usuário enviar uma string com 200 bytes, ela sobrescreverá o endereço de retorno e pode redirecionar a execução para código malicioso.

Cómo mitigar

Use funções seguras com limite de tamanho (`strncpy`, `snprintf`), valide e sanitize entradas antes de copiar, implemente proteções em tempo de execução (stack canaries, ASLR, DEP) e considere usar linguagens com verificação de limites automática quando possível.

CVE-2024-32318CRITICALTenda AC500 V2.0.1.9(1307) firmware has a stack overflow vulnerability via the vlan parameter in the formSetVlanInfo function.EPSS 0.8%CVE-2026-94184HIGHFetchmail: fetchmail: stack-based buffer overflow in ntlm authentication (fetchmail-sa-2026-01)EPSS 0.8%CVE-2025-60693MEDIUMA stack-based buffer overflow exists in the get_merge_mac function of the httpd binary on Linksys E1200 v2 routers (Firmware E1200_v2.0.11.0EPSS 0.8%CVE-2023-34365CRITICALA stack-based buffer overflow vulnerability exists in the libutils.so nvram_restore functionality of Yifan YF325 v1.0_20221108. A specially EPSS 0.8%CVE-2023-34426CRITICALA stack-based buffer overflow vulnerability exists in the httpd manage_request functionality of Yifan YF325 v1.0_20221108. A specially craftEPSS 0.8%CVE-2025-52999HIGHjackson-core Has Potential for StackoverflowError if user parses an input file that contains very deeply nested dataEPSS 0.8%CVE-2024-6744CRITICALThe SMTP Listener of Secure Email Gateway from Cellopoint does not properly validate user input, leading to a Buffer Overflow vulnerability.EPSS 0.8%CVE-2020-27001—A vulnerability has been identified in JT2Go (All versions < V13.1.0.2), Teamcenter Visualization (All versions < V13.1.0.2). Affected appliEPSS 0.8%CVE-2026-69714HIGHWindows Device Association Service Elevation of Privilege VulnerabilityEPSS 0.8%CVE-2026-69301HIGHWindows Win32k Elevation of Privilege VulnerabilityEPSS 0.8%CVE-2026-69689HIGHWindows Win32k Elevation of Privilege VulnerabilityEPSS 0.8%CVE-2026-68878HIGHWindows Fast FAT Driver Elevation of Privilege VulnerabilityEPSS 0.8%CVE-2026-69762HIGHWindows Win32k Elevation of Privilege VulnerabilityEPSS 0.8%CVE-2026-68834HIGHWindows NTFS Elevation of Privilege VulnerabilityEPSS 0.8%CVE-2026-69503HIGHWindows USB Driver Elevation of Privilege VulnerabilityEPSS 0.8%CVE-2024-54808CRITICALNetgear WNR854T 1.5.2 (North America) contains a stack-based buffer overflow vulnerability in the SetDefaultConnectionService function due tEPSS 0.8%CVE-2026-68838HIGHWindows NTFS Elevation of Privilege VulnerabilityEPSS 0.8%CVE-2025-8958HIGHTenda TX3 fast_setting_wifi_set stack-based overflowEPSS 0.8%CVE-2025-54402HIGHMultiple stack-based buffer overflow vulnerabilities exist in the formPingCmd functionality of Planet WGR-500 v1.3411b190912. A specially crEPSS 0.8%CVE-2025-54399HIGHMultiple stack-based buffer overflow vulnerabilities exist in the formPingCmd functionality of Planet WGR-500 v1.3411b190912. A specially crEPSS 0.8%