Fallos del tipo CWE-787

5212 resultados

Escrita fora dos limites de memória

Ocorre quando um programa escreve dados em uma posição de memória fora do intervalo alocado para um buffer, array ou estrutura. O atacante aproveita para sobrescrever dados adjacentes (variáveis, ponteiros, pilha de retorno), alterando o comportamento da aplicação ou assumindo controle total do sistema.

Ejemplo

Um programa lê 256 bytes de entrada do usuário e copia para um buffer de 64 bytes sem validação. O atacante envia 300 bytes, que transbordam o buffer e sobrescrevem o endereço de retorno na pilha, permitindo execução de código arbitrário.

Cómo mitigar

Sempre validar tamanho de entrada contra o limite do buffer antes de copiar (usar strncpy, snprintf em vez de strcpy, sprintf). Em linguagens modernas, usar estruturas bounds-checked (Rust, C# arrays) ou linters que detectem padrões perigosos.

CVE-2022-42521MEDIUMIn encode of wlandata.cpp, there is a possible out of bounds write due to improper input validation. This could lead to local escalation of EPSS 0.2%CVE-2022-42523MEDIUMIn fillSetupDataCallInfo_V1_6 of ril_service_1_6.cpp, there is a possible out of bounds write due to an incorrect bounds check. This could lEPSS 0.2%CVE-2026-41154HIGHGPU DDK - Incorrect Index Calculation in CMA Cleanup Path of AllocOSPages_SparseEPSS 0.2%CVE-2025-20631HIGHIn wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilegEPSS 0.2%CVE-2022-42519MEDIUMIn CdmaBroadcastSmsConfigsRequestData::encode of cdmasmsdata.cpp, there is a possible stack clash leading to memory corruption. This could lEPSS 0.2%CVE-2025-20632HIGHIn wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilegEPSS 0.2%CVE-2022-42525MEDIUMIn fillSetupDataCallInfo_V1_6 of ril_service_1_6.cpp, there is a possible out of bounds write due to an incorrect bounds check. This could lEPSS 0.2%CVE-2025-33189HIGHNVIDIA DGX Spark GB10 contains a vulnerability in SROOT firmware, where an attacker could cause an out-of-bound write. A successful exploit EPSS 0.2%CVE-2023-5912MEDIUM A potential memory leakage vulnerability was reported in some Lenovo Notebook products that may allow a local attacker with elevated privilEPSS 0.2%CVE-2025-23299MEDIUMNVIDIA Bluefield and ConnectX contain a vulnerability in the management interface that could allow a malicious actor with high privilege accEPSS 0.2%CVE-2026-43904HIGHOpenImageIO: Softimage PIC RLE decoder heap buffer overflow — longCount not clamped to image widthEPSS 0.2%CVE-2019-25591MEDIUMDNSS Domain Name Search Software 2.1.8 Denial of ServiceEPSS 0.2%CVE-2025-54222HIGHSubstance3D - Stager | Out-of-bounds Write (CWE-787)EPSS 0.2%CVE-2026-64764HIGHAn out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 18.7.10 and iPadOS 18.7.10, iOS 26.6 anEPSS 0.2%CVE-2026-64763HIGHAn out-of-bounds write issue was addressed by removing the vulnerable code. This issue is fixed in iOS 18.7.10 and iPadOS 18.7.10, iOS 26.6 EPSS 0.2%CVE-2022-32266MEDIUMDMA attacks on the parameter buffer used by a software SMI handler used by the driver PcdSmmDxe could lead to a TOCTOU attack on the SMI hanEPSS 0.2%CVE-2023-5643HIGHMali GPU Kernel Driver allows improper GPU memory processing operationsEPSS 0.2%CVE-2026-65704HIGHFFmpeg 8.1.2 Out-of-Bounds Write via TY Demuxer and Shorten DecoderEPSS 0.2%CVE-2024-2971LOWOut-of-bounds array access due to negative object numbers in indirect references in Xpdf 4.05EPSS 0.2%CVE-2026-53720MEDIUMpymonocypher: Potential heap buffer overflow on nb_blocks in argon2i_32 when provided buffer is too smallEPSS 0.2%