Fallos del tipo CWE-787

5228 resultados

Escrita fora dos limites de memória

Ocorre quando um programa escreve dados em uma posição de memória fora do intervalo alocado para um buffer, array ou estrutura. O atacante aproveita para sobrescrever dados adjacentes (variáveis, ponteiros, pilha de retorno), alterando o comportamento da aplicação ou assumindo controle total do sistema.

Ejemplo

Um programa lê 256 bytes de entrada do usuário e copia para um buffer de 64 bytes sem validação. O atacante envia 300 bytes, que transbordam o buffer e sobrescrevem o endereço de retorno na pilha, permitindo execução de código arbitrário.

Cómo mitigar

Sempre validar tamanho de entrada contra o limite do buffer antes de copiar (usar strncpy, snprintf em vez de strcpy, sprintf). Em linguagens modernas, usar estruturas bounds-checked (Rust, C# arrays) ou linters que detectem padrões perigosos.

CVE-2026-0035HIGHIn createRequest of MediaProvider.java, there is a possible way for an app to gain read/write access to non-existing files due to a logic erEPSS 0.1%CVE-2026-58088HIGHRace condition in ELF core dump segment countingEPSS 0.1%CVE-2026-20410MEDIUMIn imgsys, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege if a maliEPSS 0.1%CVE-2026-21090MEDIUMOut-of-bounds write in libsaviextractor.so prior to SMR Sep-2026 Release 1 allows local attackers to write out-of-bounds memory.EPSS 0.1%CVE-2021-39661HIGHIn _PMRLogicalOffsetToPhysicalOffset of the PowerVR kernel driver, there is a possible out of bounds write due to a missing bounds check. ThEPSS 0.1%CVE-2023-20696MEDIUMIn preloader, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with SEPSS 0.1%CVE-2024-27212HIGHIn init_data of , there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege wiEPSS 0.1%CVE-2023-32848MEDIUMIn vdec, there is a possible out of bounds write due to type confusion. This could lead to local escalation of privilege with System executiEPSS 0.1%CVE-2026-21091MEDIUMOut-of-bounds write in libcodec2secevrcdec.so prior to SMR Sep-2026 Release 1 allows local attackers to write out-of-bounds memory.EPSS 0.1%CVE-2026-55597MEDIUMImageMagick: Heap Buffer Over-Write in JP2 encoder when due to incorrect handling of argumentsEPSS 0.1%CVE-2026-102757HIGHAn unprivileged, memory-protected ThreadX module can have the kernel read and write memory at addresses of its choosing, in privileged mode,EPSS 0.1%CVE-2024-20023MEDIUMIn flashc, there is a possible out of bounds write due to lack of valudation. This could lead to local escalation of privilege with System eEPSS 0.1%CVE-2022-20582HIGHIn ppmp_unprotect_mfcfw_buf of drm_fw.c, there is a possible out of bounds write due to improper input validation. This could lead to local EPSS 0.1%CVE-2023-20850MEDIUMIn imgsys_cmdq, there is a possible out of bounds write due to a missing valid range checking. This could lead to local escalation of privilEPSS 0.1%CVE-2023-20842MEDIUMIn imgsys_cmdq, there is a possible out of bounds write due to a missing valid range checking. This could lead to local escalation of privilEPSS 0.1%CVE-2024-23715HIGHIn PMRWritePMPageList of pmr.c, there is a possible out of bounds write due to a logic error in the code. This could lead to local escalatioEPSS 0.1%CVE-2023-20841MEDIUMIn imgsys, there is a possible out of bounds write due to a missing valid range checking. This could lead to local escalation of privilege wEPSS 0.1%CVE-2023-20840MEDIUMIn imgsys, there is a possible out of bounds read and write due to a missing valid range checking. This could lead to local escalation of prEPSS 0.1%CVE-2018-9405MEDIUMIn BnDmAgent::onTransact of dm_agent.cpp, there is a possible out of bounds write due to a missing bounds check. This could lead to local esEPSS 0.1%CVE-2023-40110MEDIUMIn multiple functions of MtpPacket.cpp, there is a possible out of bounds write due to a heap buffer overflow. This could lead to local escaEPSS 0.1%