Fallos del tipo CWE-787

5172 resultados

Escrita fora dos limites de memória

Ocorre quando um programa escreve dados em uma posição de memória fora do intervalo alocado para um buffer, array ou estrutura. O atacante aproveita para sobrescrever dados adjacentes (variáveis, ponteiros, pilha de retorno), alterando o comportamento da aplicação ou assumindo controle total do sistema.

Ejemplo

Um programa lê 256 bytes de entrada do usuário e copia para um buffer de 64 bytes sem validação. O atacante envia 300 bytes, que transbordam o buffer e sobrescrevem o endereço de retorno na pilha, permitindo execução de código arbitrário.

Cómo mitigar

Sempre validar tamanho de entrada contra o limite do buffer antes de copiar (usar strncpy, snprintf em vez de strcpy, sprintf). Em linguagens modernas, usar estruturas bounds-checked (Rust, C# arrays) ou linters que detectem padrões perigosos.

CVE-2024-27327HIGHPDF-XChange Editor PDF File Parsing Out-Of-Bounds Write Remote Code Execution VulnerabilityEPSS 0.4%CVE-2025-1050HIGHSonos Era 300 Out-of-Bounds Write Remote Code Execution VulnerabilityEPSS 0.4%CVE-2024-27802HIGHAn out-of-bounds read was addressed with improved input validation. This issue is fixed in iOS 16.7.8 and iPadOS 16.7.8, iOS 17.5 and iPadOSEPSS 0.4%CVE-2022-35096MEDIUMSWFTools commit 772e55a2 was discovered to contain a heap-buffer overflow via draw_stroke at /gfxpoly/stroke.c.EPSS 0.4%CVE-2026-28918MEDIUMAn out-of-bounds access issue was addressed with improved bounds checking. This issue is fixed in iOS 26.5 and iPadOS 26.5, macOS Tahoe 26.5EPSS 0.4%CVE-2026-84519MEDIUMAn out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOSEPSS 0.4%CVE-2023-3110CRITICALBuffer overflow in S0 Decryption on Unify GatewayEPSS 0.4%CVE-2026-16901HIGHVulnerabilities in IBM AIX and PowerVM VIOSEPSS 0.4%CVE-2026-28966MEDIUMAn out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOSEPSS 0.4%CVE-2026-10673HIGHOut-of-bounds write in ADIN2111/ADIN1110 OA SPI Ethernet RX frame reassemblyEPSS 0.4%CVE-2026-6784HIGHMemory safety bugs fixed in Firefox 150 and Thunderbird 150EPSS 0.4%CVE-2026-16903CRITICALVulnerabilities in IBM AIX and PowerVM VIOSEPSS 0.4%CVE-2024-49748CRITICALIn gatts_process_primary_service_req of gatt_sr.cc, there is a possible out of bounds write due to a heap buffer overflow. This could lead tEPSS 0.4%CVE-2026-59186HIGHOpenEXR: Heap out-of-bounds write in TiledRgbaInputFile via integer overflow on 32-bit (ILP32) buildsEPSS 0.4%CVE-2023-50805HIGHA vulnerability was discovered in Samsung Mobile Processor, Wearable Processor, and Modems with versions Exynos 9820, Exynos 9825, Exynos 98EPSS 0.4%CVE-2022-48622HIGHIn GNOME GdkPixbuf (aka gdk-pixbuf) through 2.42.10, the ANI (Windows animated cursor) decoder encounters heap memory corruption (in ani_loaEPSS 0.4%CVE-2023-50807HIGHA vulnerability was discovered in Samsung Wearable Processor and Modems with versions Exynos 9110, Exynos Modem 5123, Exynos Modem 5300 thatEPSS 0.4%CVE-2025-47728HIGHFile Parsing Memory Corruption in CNCSoft-G2EPSS 0.4%CVE-2022-32911HIGHThe issue was addressed with improved memory handling. This issue is fixed in macOS Monterey 12.6, iOS 15.7 and iPadOS 15.7, iOS 16, macOS BEPSS 0.4%CVE-2026-16847HIGHVulnerabilities in IBM AIX and PowerVM VIOSEPSS 0.4%