Fallos del tipo CWE-787

5238 resultados

Escrita fora dos limites de memória

Ocorre quando um programa escreve dados em uma posição de memória fora do intervalo alocado para um buffer, array ou estrutura. O atacante aproveita para sobrescrever dados adjacentes (variáveis, ponteiros, pilha de retorno), alterando o comportamento da aplicação ou assumindo controle total do sistema.

Ejemplo

Um programa lê 256 bytes de entrada do usuário e copia para um buffer de 64 bytes sem validação. O atacante envia 300 bytes, que transbordam o buffer e sobrescrevem o endereço de retorno na pilha, permitindo execução de código arbitrário.

Cómo mitigar

Sempre validar tamanho de entrada contra o limite do buffer antes de copiar (usar strncpy, snprintf em vez de strcpy, sprintf). Em linguagens modernas, usar estruturas bounds-checked (Rust, C# arrays) ou linters que detectem padrões perigosos.

CVE-2024-20115MEDIUMIn ccu, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System EPSS 0.1%CVE-2018-9414HIGHIn gattServerSendResponseNative of com_android_bluetooth_gatt.cpp, there is a possible out of bounds stack write due to a missing bounds cheEPSS 0.1%CVE-2025-32316MEDIUMIn gralloc4, there is a possible out of bounds write due to a missing bounds check. This could lead to local information disclosure with no EPSS 0.1%CVE-2024-20109MEDIUMIn ccu, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System EPSS 0.1%CVE-2026-21384MEDIUMOut-of-bounds Write in Camera DriverEPSS 0.1%CVE-2024-20113MEDIUMIn ccu, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System EPSS 0.1%CVE-2024-32917HIGHIn pl330_dma_from_peri_start() of fp_spi_dma.c, there is a possible out of bounds write due to a missing bounds check. This could lead to loEPSS 0.1%CVE-2025-36931HIGHIn GetHostAddress of gxp_buffer.h, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalatioEPSS 0.1%CVE-2025-36925HIGHIn WAVES_send_data_to_dsp of libaoc_waves.c, there is a possible out of bounds write due to a missing bounds check. This could lead to localEPSS 0.1%CVE-2024-47024HIGHIn vring_size of external/headers/include/virtio/virtio_ring.h, there is a possible out of bounds write due to an integer overflow. This couEPSS 0.1%CVE-2024-32921HIGHIn lwis_initialize_transaction_fences of lwis_fence.c, there is a possible out of bounds write due to a missing bounds check. This could leaEPSS 0.1%CVE-2025-59605HIGHOut-of-bounds Write in HLOSEPSS 0.1%CVE-2026-0123HIGHIn EfwApTransport::ProcessRxRing of efw_ap_transport.cc, there is a possible out of bounds write due to a missing bounds check. This could lEPSS 0.1%CVE-2026-0199HIGHIn gf_ta_test_set_config of gf_ta_test.c, there is a possible out-of-bounds write due to improper input validation. This could lead to localEPSS 0.1%CVE-2025-47373HIGHOut-of-bounds Write in AutomotiveEPSS 0.1%CVE-2025-59603HIGHOut-of-bounds Write in Computer VisionEPSS 0.1%CVE-2026-0138HIGHIn lwis_io_buffer_write of lwis_io_buffer.c, there is a possible out of bounds write due to memory corruption. This could lead to local escaEPSS 0.1%CVE-2026-25259HIGHOut-of-bounds Write in DSP ServiceEPSS 0.1%CVE-2026-24073HIGHOut-of-bounds Write in VideoEPSS 0.1%CVE-2026-25280HIGHOut-of-bounds Write in DSP ServiceEPSS 0.1%