Fallos del tipo CWE-1260

15 resultados

Tratamento inadequado de sobreposição entre regiões de memória protegida

Ocorre quando o software falha em validar ou gerenciar corretamente regiões de memória que se sobrepõem, especialmente aquelas designadas como protegidas ou isoladas. Isso permite que um atacante acesse, modifique ou contorne mecanismos de segurança através dessa sobreposição, comprometendo a integridade da isolação de memória.

Ejemplo

Um hypervisor ou kernel que permite mapear duas regiões de memória virtual para o mesmo endereço físico, onde uma deveria ser isolada de uma VM e a outra visível ao host. Um atacante mapeia a mesma página física em dois endereços virtuais diferentes com permissões conflitantes, escapando do isolamento esperado.

Cómo mitigar

Validar sistematicamente todas as requisições de mapeamento de memória para detectar e rejeitar sobreposições não intencais; implementar testes de overlap em camadas críticas como MMU handlers e gerenciadores de memória virtual; manter registros de regiões protegidas com checks explícitos antes de permitir novos mapeamentos.

CVE-2019-1164HIGHWindows Kernel Elevation of Privilege VulnerabilityEPSS 0.9%CVE-2025-1937HIGHMemory safety bugs fixed in Firefox 136, Thunderbird 136, Firefox ESR 115.21, Firefox ESR 128.8, and Thunderbird 128.8EPSS 0.5%CVE-2024-4778CRITICALMemory safety bugs present in Firefox 125. Some of these bugs showed evidence of memory corruption and we presume that with enough effort soEPSS 0.4%CVE-2019-25570MEDIUMRealTerm Serial Terminal 2.0.0.70 Denial of Service via Port FieldEPSS 0.2%CVE-2022-27813HIGHUnconfigured memory protection modules in Motorola MTM5000EPSS 0.2%CVE-2019-25585MEDIUMDeluge 1.3.15 Denial of Service via Webseeds FieldEPSS 0.2%CVE-2019-25559MEDIUMSpotPaltalk 1.1.5 Name/Key Field Denial of ServiceEPSS 0.2%CVE-2019-25592MEDIUMPHPRunner 10.1 Denial of Service via Dashboard Name FieldEPSS 0.2%CVE-2018-25238MEDIUMVSCO 1.1.1.0 Denial of Service via SearchEPSS 0.2%CVE-2019-25572MEDIUMNordVPN 6.19.6 Denial of Service via Email Field Buffer OverflowEPSS 0.2%CVE-2025-22889HIGHImproper handling of overlap between protected memory ranges for some Intel(R) Xeon(R) 6 processor with Intel(R) TDX may allow a privileged EPSS 0.1%CVE-2025-29948MEDIUMImproper access control in AMD Secure Encrypted Virtualization (SEV) firmware could allow a malicious hypervisor to bypass RMP protections, EPSS 0.1%CVE-2025-0012MEDIUMImproper handling of overlap between the segmented reverse map table (RMP) and system management mode (SMM) memory could allow a privileged EPSS 0.1%CVE-2018-25240MEDIUMWatchr 1.1.0.0 Denial of Service via SearchEPSS 0.1%CVE-2019-25602MEDIUMGSearch 1.0.1.0 Denial of Service via Search InputEPSS 0.1%