Fallos del tipo CWE-787

5212 resultados

Escrita fora dos limites de memória

Ocorre quando um programa escreve dados em uma posição de memória fora do intervalo alocado para um buffer, array ou estrutura. O atacante aproveita para sobrescrever dados adjacentes (variáveis, ponteiros, pilha de retorno), alterando o comportamento da aplicação ou assumindo controle total do sistema.

Ejemplo

Um programa lê 256 bytes de entrada do usuário e copia para um buffer de 64 bytes sem validação. O atacante envia 300 bytes, que transbordam o buffer e sobrescrevem o endereço de retorno na pilha, permitindo execução de código arbitrário.

Cómo mitigar

Sempre validar tamanho de entrada contra o limite do buffer antes de copiar (usar strncpy, snprintf em vez de strcpy, sprintf). Em linguagens modernas, usar estruturas bounds-checked (Rust, C# arrays) ou linters que detectem padrões perigosos.

CVE-2019-25712MEDIUMBlueAuditor 1.7.2.0 Buffer Overflow Denial of Service via Registration KeyEPSS 0.2%CVE-2022-29277HIGHIncorrect pointer checks within the the FwBlockServiceSmm driver can allow arbitrary RAM modifications During review of the FwBlockServiceSmEPSS 0.2%CVE-2018-25268HIGHLanSpy 2.0.1.159 Local Buffer Overflow via Scan FieldEPSS 0.2%CVE-2018-9413HIGHIn handle_notification_response of btif_rc.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to remEPSS 0.2%CVE-2024-0429HIGHBuffer overflow vulnerability on Hex WorkshopEPSS 0.2%CVE-2021-29566LOWHeap OOB access in `Dilation2DBackpropInput`EPSS 0.2%CVE-2023-49675HIGHCODESYS: Out-of-bounds write through corrupted project filesEPSS 0.2%CVE-2023-49128HIGHA vulnerability has been identified in Solid Edge SE2023 (All versions < V223.0 Update 10). The affected application contains an out of bounEPSS 0.2%CVE-2025-21650HIGHnet: hns3: fixed hclge_fetch_pf_reg accesses bar space out of bounds issueEPSS 0.2%CVE-2021-3721MEDIUMA denial of service vulnerability was reported in Lenovo PCManager prior to version 4.0.20.10282 that could allow an attacker with local accEPSS 0.2%CVE-2023-39431HIGHSantesoft Sante DICOM Viewer Pro Out-of-bounds WriteEPSS 0.2%CVE-2022-29276HIGHSMI functions in AhciBusDxe use untrusted inputs leading to corruption of SMRAM. SMI functions in AhciBusDxe use untrusted inputs leading toEPSS 0.2%CVE-2024-56740HIGHnfs/localio: must clear res.replen in nfs_local_read_doneEPSS 0.2%CVE-2022-30771HIGHInitialization function in PnpSmm could lead to SMRAM corruption when using subsequent PNP SMI functions Initialization function in PnpSmm cEPSS 0.2%CVE-2022-30772HIGHManipulation of the input address in PnpSmm function 0x52 could be used by malware to overwrite SMRAM or OS kernel memory. Function 0x52 of EPSS 0.2%CVE-2019-25562MEDIUMjetAudio 8.1.7 Denial of Service via File Naming Buffer OverflowEPSS 0.2%CVE-2025-6633HIGHRBG File Parsing Out-of-Bounds Write VulnerabilityEPSS 0.2%CVE-2026-47626HIGHNVIDIA DGX Spark contains a vulnerability in the system firmware, where a privileged attacker could be able to cause an out-of-bounds write.EPSS 0.2%CVE-2026-31795HIGHiccDEV has a stack buffer overflow write in CIccXform3DLut::Apply()EPSS 0.2%CVE-2026-30987HIGHiccDEV has a stack buffer overflow in CIccTagNum<(icTagTypeSignature)>::GetValues()EPSS 0.2%