Fallos del tipo CWE-787

5237 resultados

Escrita fora dos limites de memória

Ocorre quando um programa escreve dados em uma posição de memória fora do intervalo alocado para um buffer, array ou estrutura. O atacante aproveita para sobrescrever dados adjacentes (variáveis, ponteiros, pilha de retorno), alterando o comportamento da aplicação ou assumindo controle total do sistema.

Ejemplo

Um programa lê 256 bytes de entrada do usuário e copia para um buffer de 64 bytes sem validação. O atacante envia 300 bytes, que transbordam o buffer e sobrescrevem o endereço de retorno na pilha, permitindo execução de código arbitrário.

Cómo mitigar

Sempre validar tamanho de entrada contra o limite do buffer antes de copiar (usar strncpy, snprintf em vez de strcpy, sprintf). Em linguagens modernas, usar estruturas bounds-checked (Rust, C# arrays) ou linters que detectem padrões perigosos.

CVE-2026-20441MEDIUMIn MAE, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege if a malicioEPSS 0.1%CVE-2024-53833HIGHIn prepare_response_locked of lwis_transaction.c, there is a possible out of bounds write due to improper input validation. This could leadEPSS 0.1%CVE-2025-20800HIGHIn mminfra, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege if a malEPSS 0.1%CVE-2024-49738HIGHIn writeInplace of Parcel.cpp, there is a possible out of bounds write. This could lead to local escalation of privilege with no additional EPSS 0.1%CVE-2026-20428MEDIUMIn display, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege if a malEPSS 0.1%CVE-2025-20767HIGHIn display, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege if a maliciEPSS 0.1%CVE-2024-53838HIGHIn Exynos_parsing_user_data_registered_itu_t_t35 of VendorVideoAPI.cpp, there is a possible out of bounds write due to an incorrect bounds cEPSS 0.1%CVE-2026-21370MEDIUMOut-of-bounds Write in Camera DriverEPSS 0.1%CVE-2018-9424HIGHIn CryptoPlugin::decrypt of CryptoPlugin.cpp, there is a possible out of bounds write due to a missing bounds check. This could lead to locaEPSS 0.1%CVE-2024-20120MEDIUMIn KeyInstall, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with EPSS 0.1%CVE-2024-47035HIGHIn vring_init of external/headers/include/virtio/virtio_ring.h, there is a possible out of bounds write due to a logic error in the code. ThEPSS 0.1%CVE-2024-20113MEDIUMIn ccu, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System EPSS 0.1%CVE-2024-20111MEDIUMIn ccu, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System EPSS 0.1%CVE-2025-59611MEDIUMOut-of-bounds Write in Core ServicesEPSS 0.1%CVE-2024-20115MEDIUMIn ccu, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System EPSS 0.1%CVE-2025-20636MEDIUMIn secmem, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege if a maliEPSS 0.1%CVE-2018-9469HIGHIn multiple functions of ShortcutService.java, there is a possible creation of a spoofed shortcut due to a missing permission check. This coEPSS 0.1%CVE-2018-9414HIGHIn gattServerSendResponseNative of com_android_bluetooth_gatt.cpp, there is a possible out of bounds stack write due to a missing bounds cheEPSS 0.1%CVE-2025-32316MEDIUMIn gralloc4, there is a possible out of bounds write due to a missing bounds check. This could lead to local information disclosure with no EPSS 0.1%CVE-2024-20114MEDIUMIn ccu, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System EPSS 0.1%