Fallos del tipo CWE-787

5158 resultados

Escrita fora dos limites de memória

Ocorre quando um programa escreve dados em uma posição de memória fora do intervalo alocado para um buffer, array ou estrutura. O atacante aproveita para sobrescrever dados adjacentes (variáveis, ponteiros, pilha de retorno), alterando o comportamento da aplicação ou assumindo controle total do sistema.

Ejemplo

Um programa lê 256 bytes de entrada do usuário e copia para um buffer de 64 bytes sem validação. O atacante envia 300 bytes, que transbordam o buffer e sobrescrevem o endereço de retorno na pilha, permitindo execução de código arbitrário.

Cómo mitigar

Sempre validar tamanho de entrada contra o limite do buffer antes de copiar (usar strncpy, snprintf em vez de strcpy, sprintf). Em linguagens modernas, usar estruturas bounds-checked (Rust, C# arrays) ou linters que detectem padrões perigosos.

CVE-2026-19437HIGHVulnerabilities in IBM AIX and PowerVM VIOSEPSS 0.5%CVE-2021-43529CRITICALThunderbird versions prior to 91.3.0 are vulnerable to the heap overflow described in CVE-2021-43527 when processing S/MIME messages. ThundeEPSS 0.5%CVE-2026-7322HIGHMemory safety bugs fixed in Thunderbird ESR 140.10.1 and Thunderbird 150.0.1EPSS 0.5%CVE-2024-12198HIGHDWFX File Parsing Vulnerabilities in Autodesk Navisworks Desktop SoftwareEPSS 0.5%CVE-2023-0054HIGHOut-of-bounds Write in vim/vimEPSS 0.5%CVE-2022-41992HIGHA memory corruption vulnerability exists in the VHD File Format parsing CXSPARSE record functionality of PowerISO PowerISO 8.3. A specially-EPSS 0.5%CVE-2026-93393CRITICALHeap overflow via oversized decrypted TLS record sequence in Windows Secure Channel streamEPSS 0.5%CVE-2026-5066MEDIUMnet: sockets: tls: Potential out-of-bounds write/read in socket_op_vtable::connect functionEPSS 0.5%CVE-2024-28562MEDIUMBuffer Overflow vulnerability in open source FreeImage v.3.19.0 [r1909] allows a local attacker to execute arbitrary code via the Imf_2_2::cEPSS 0.5%CVE-2026-85670HIGHtokenizers BpeBuilder Buffer Overflow via merge tokenEPSS 0.5%CVE-2026-68806HIGHMicrosoft Excel Remote Code Execution VulnerabilityEPSS 0.5%CVE-2026-62871HIGH.NET Elevation of Privilege VulnerabilityEPSS 0.5%CVE-2025-43210MEDIUMAn out-of-bounds access issue was addressed with improved bounds checking. This issue is fixed in iOS 18.6 and iPadOS 18.6, iPadOS 17.7.9, mEPSS 0.5%CVE-2026-8388MEDIUMIncorrect boundary conditions in the JavaScript Engine: JIT componentEPSS 0.5%CVE-2021-3695—A crafted 16-bit grayscale PNG image may lead to a out-of-bounds write in the heap area. An attacker may take advantage of that to cause heaEPSS 0.5%CVE-2026-65395MEDIUMAn out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOSEPSS 0.5%CVE-2026-34379HIGHOpenEXR has a misaligned write in LossyDctDecoder_execute leading to undefined behavior (DWA/DWAB decompression)EPSS 0.5%CVE-2026-28956MEDIUMA memory corruption issue was addressed with improved input validation. This issue is fixed in iOS 26.5 and iPadOS 26.5, macOS Sequoia 15.7.EPSS 0.5%CVE-2025-5269HIGHMemory safety bug fixed in Firefox ESR 128.11 and Thunderbird 128.11EPSS 0.5%CVE-2021-3546—An out-of-bounds write vulnerability was found in the virtio vhost-user GPU device (vhost-user-gpu) of QEMU in versions up to and including EPSS 0.5%