Fallos del tipo CWE-787

5212 resultados

Escrita fora dos limites de memória

Ocorre quando um programa escreve dados em uma posição de memória fora do intervalo alocado para um buffer, array ou estrutura. O atacante aproveita para sobrescrever dados adjacentes (variáveis, ponteiros, pilha de retorno), alterando o comportamento da aplicação ou assumindo controle total do sistema.

Ejemplo

Um programa lê 256 bytes de entrada do usuário e copia para um buffer de 64 bytes sem validação. O atacante envia 300 bytes, que transbordam o buffer e sobrescrevem o endereço de retorno na pilha, permitindo execução de código arbitrário.

Cómo mitigar

Sempre validar tamanho de entrada contra o limite do buffer antes de copiar (usar strncpy, snprintf em vez de strcpy, sprintf). Em linguagens modernas, usar estruturas bounds-checked (Rust, C# arrays) ou linters que detectem padrões perigosos.

CVE-2026-42953HIGHOut-of-bounds write in Labcenter ProteusEPSS 0.2%CVE-2026-12927HIGHCWE-787 Out-of-bounds write vulnerability exists that could cause loss of data or potentially risk arbitrary code execution when a maliciousEPSS 0.2%CVE-2026-86095HIGHUnidata netcdf-c through 4.10.1 Out-of-bounds Write via Oversized HDF5 Attribute NameEPSS 0.2%CVE-2026-68514MEDIUMOpenEXR: Heap buffer overflow in PyOpenEXR from literal/prefixed RGB channel name collision in deep imagesEPSS 0.2%CVE-2023-49614MEDIUMOut of bounds write in firmware for some Intel(R) FPGA products before version 2.9.0 may allow escalation of privilege and information disclEPSS 0.2%CVE-2023-32840HIGHIn modem CCCI, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with EPSS 0.2%CVE-2026-47178MEDIUMlibheif has Heap Out Of Bounds Write in unci subsystemEPSS 0.2%CVE-2025-1471HIGHEclipse OMR: Buffer overflow vulnerabilityEPSS 0.2%CVE-2018-25216MEDIUMAnyBurn 4.3 Denial of Service Local Buffer OverflowEPSS 0.2%CVE-2024-23497CRITICALOut-of-bounds write in Linux kernel mode driver for some Intel(R) Ethernet Network Controllers and Adapters before version 28.3 may allow anEPSS 0.2%CVE-2025-6033HIGHMemory Corruption issue in XML_Serialize() in NI Circuit Design SuiteEPSS 0.2%CVE-2019-25567MEDIUMValentina Studio 9.0.5 Linux Buffer Overflow via Host FieldEPSS 0.2%CVE-2019-25589MEDIUMZOC Terminal 7.23.4 Buffer Overflow Denial of ServiceEPSS 0.2%CVE-2024-43096HIGHIn build_read_multi_rsp of gatt_sr.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to remote (proEPSS 0.2%CVE-2018-25271MEDIUMTextpad 8.1.2 Denial of Service via Run CommandEPSS 0.2%CVE-2019-25637HIGHX-NetStat Pro 5.63 Local Buffer Overflow via EggHunterEPSS 0.2%CVE-2019-25565MEDIUMMagic Iso Maker 5.5 Buffer Overflow Denial of ServiceEPSS 0.2%CVE-2019-25566MEDIUMTransMac 12.3 Denial of Service via Volume Name FieldEPSS 0.2%CVE-2019-25650HIGHRiver Past CamDo 3.7.6 Structured Exception Handler Buffer OverflowEPSS 0.2%CVE-2026-20407CRITICALIn wlan STA driver, there is a possible escalation of privilege due to a missing bounds check. This could lead to local escalation of privilEPSS 0.2%