Fallos del tipo CWE-787

5154 resultados

Escrita fora dos limites de memória

Ocorre quando um programa escreve dados em uma posição de memória fora do intervalo alocado para um buffer, array ou estrutura. O atacante aproveita para sobrescrever dados adjacentes (variáveis, ponteiros, pilha de retorno), alterando o comportamento da aplicação ou assumindo controle total do sistema.

Ejemplo

Um programa lê 256 bytes de entrada do usuário e copia para um buffer de 64 bytes sem validação. O atacante envia 300 bytes, que transbordam o buffer e sobrescrevem o endereço de retorno na pilha, permitindo execução de código arbitrário.

Cómo mitigar

Sempre validar tamanho de entrada contra o limite do buffer antes de copiar (usar strncpy, snprintf em vez de strcpy, sprintf). Em linguagens modernas, usar estruturas bounds-checked (Rust, C# arrays) ou linters que detectem padrões perigosos.

CVE-2023-27344HIGHPDF-XChange Editor PDF File Parsing Out-Of-Bounds Write Remote Code Execution VulnerabilityEPSS 0.5%CVE-2023-27343HIGHPDF-XChange Editor EMF File Parsing Out-Of-Bounds Write Remote Code Execution VulnerabilityEPSS 0.5%CVE-2023-35788HIGHAn issue was discovered in fl_set_geneve_opt in net/sched/cls_flower.c in the Linux kernel before 6.3.7. It allows an out-of-bounds write inEPSS 0.5%CVE-2025-20182HIGHCisco Adaptive Security Appliance Software, Firepower Threat Defense Software and IOS XE Software IKEv2 Denial of Service VulnerabilityEPSS 0.5%CVE-2025-43237CRITICALAn out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in macOS Sequoia 15.6. An app may be able to cEPSS 0.5%CVE-2023-27345HIGHPDF-XChange Editor PDF File Parsing Out-Of-Bounds Write Remote Code Execution VulnerabilityEPSS 0.5%CVE-2024-37036CRITICALCWE-787: Out-of-bounds Write vulnerability exists that could result in an authentication bypass when sending a malformed POST request and paEPSS 0.5%CVE-2026-5190HIGHAWS C Event Stream Streaming Decoder Stack Buffer OverflowEPSS 0.5%CVE-2018-10883MEDIUMA flaw was found in the Linux kernel's ext4 filesystem. A local user can cause an out-of-bounds write in jbd2_journal_dirty_metadata(), a deEPSS 0.5%CVE-2025-66945CRITICALA path traversal vulnerability exists in the ZIP extraction API of Zdir Pro 4.x. When a crafted ZIP archive is processed by the backend at /EPSS 0.5%CVE-2026-2681MEDIUMGithub.com/supranational/blst: blst cryptographic library: denial of service via out-of-bounds stack write in key generationEPSS 0.5%CVE-2026-87121CRITICALOut-of-bounds write in lwIP TCP/IP Stack MQTT Client ApplicationEPSS 0.5%CVE-2026-53002CRITICALnetfilter: conntrack: remove sprintf usageEPSS 0.5%CVE-2026-65374HIGHA memory corruption issue was addressed with improved validation. This issue is fixed in macOS Golden Gate 27, macOS Sequoia 15.8, macOS TahEPSS 0.5%CVE-2024-28318HIGHgpac 2.3-DEV-rev921-g422b78ecf-master was discovered to contain a out of boundary write vulnerability via swf_get_string at scene_manager/swEPSS 0.5%CVE-2023-52727HIGHOpen Networking Foundation SD-RAN ONOS onos-lib-go 0.10.25 allows an index out-of-range condition in parseAlignBits.EPSS 0.5%CVE-2026-45813HIGHApache NimBLE: Incorrect data validation in BASS add/modify source operationEPSS 0.5%CVE-2025-20727HIGHIn Modem, there is a possible out of bounds write due to a heap buffer overflow. This could lead to remote escalation of privilege, if a UE EPSS 0.5%CVE-2024-7970HIGHOut of bounds write in V8 in Google Chrome prior to 128.0.6613.119 allowed a remote attacker to potentially exploit heap corruption via a crEPSS 0.5%CVE-2024-43688HIGHcron/entry.c in vixie cron before 9cc8ab1, as used in OpenBSD 7.4 and 7.5, allows a heap-based buffer underflow and memory corruption. NOTE:EPSS 0.5%