Fallos del tipo CWE-787

5146 resultados

Escrita fora dos limites de memória

Ocorre quando um programa escreve dados em uma posição de memória fora do intervalo alocado para um buffer, array ou estrutura. O atacante aproveita para sobrescrever dados adjacentes (variáveis, ponteiros, pilha de retorno), alterando o comportamento da aplicação ou assumindo controle total do sistema.

Ejemplo

Um programa lê 256 bytes de entrada do usuário e copia para um buffer de 64 bytes sem validação. O atacante envia 300 bytes, que transbordam o buffer e sobrescrevem o endereço de retorno na pilha, permitindo execução de código arbitrário.

Cómo mitigar

Sempre validar tamanho de entrada contra o limite do buffer antes de copiar (usar strncpy, snprintf em vez de strcpy, sprintf). Em linguagens modernas, usar estruturas bounds-checked (Rust, C# arrays) ou linters que detectem padrões perigosos.

CVE-2023-5367HIGHXorg-x11-server: out-of-bounds write in xichangedeviceproperty/rrchangeoutputpropertyEPSS 0.6%CVE-2024-37077HIGHArkcompiler Ets Runtime has an out-of-bounds write vulnerabilityEPSS 0.6%CVE-2026-2793CRITICALMemory safety bugs fixed in Firefox ESR 115.33, Firefox ESR 140.8, Thunderbird ESR 140.8, Firefox 148 and Thunderbird 148EPSS 0.6%CVE-2022-25972HIGHAn out-of-bounds write vulnerability exists in the gif2h5 functionality of HDF5 Group libhdf5 1.10.4. A specially-crafted GIF file can lead EPSS 0.6%CVE-2024-48856CRITICALVulnerabilities in TIFF and PCX Image Codecs Impact QNX Software Development PlatformEPSS 0.6%CVE-2026-2792CRITICALMemory safety bugs fixed in Firefox ESR 140.8, Thunderbird ESR 140.8, Firefox 148 and Thunderbird 148EPSS 0.6%CVE-2022-40650HIGHThis vulnerability allows remote attackers to execute arbitrary code on affected installations of Ansys SpaceClaim 2022 R1. User interactionEPSS 0.6%CVE-2025-69419HIGHOut of bounds write in PKCS12_get_friendlyname() UTF-8 conversionEPSS 0.6%CVE-2023-22411HIGHJunos OS: SRX Series: The flow processing daemon (flowd) will crash when Unified Policies are used with IPv6 and certain dynamic applications are rejected by the deviceEPSS 0.6%CVE-2024-23121HIGHMultiple Vulnerabilities in the Autodesk AutoCAD Desktop SoftwareEPSS 0.6%CVE-2021-32419MEDIUMAn issue in Schism Tracker v20200412 fixed in v.20200412 allows attacker to obtain sensitive information via the fmt_mtm_load_song function EPSS 0.6%CVE-2022-3397HIGHOMRON CX-Programmer Out-of-bounds WriteEPSS 0.6%CVE-2022-3396HIGHOMRON CX-Programmer Out-of-bounds WriteEPSS 0.6%CVE-2022-3398HIGHOMRON CX-Programmer Out-of-bounds WriteEPSS 0.6%CVE-2026-40393HIGHIn Mesa before 25.3.6 and 26 before 26.0.1, out-of-bounds memory access can occur in WebGPU because the amount of to-be-allocated data depenEPSS 0.6%CVE-2023-6387HIGHIncorrect buffer parsing in Bluetooth LE sample code may lead to buffer overflowEPSS 0.6%CVE-2023-30770HIGHA stack-based buffer overflow vulnerability was found in the ADMEPSS 0.6%CVE-2020-8871HIGHThis vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 15.1.0-47107 . An attacker mEPSS 0.6%CVE-2026-26965HIGHFreeRDP has Out-of-bounds WriteEPSS 0.6%CVE-2022-32947HIGHThe issue was addressed with improved memory handling. This issue is fixed in iOS 16.1 and iPadOS 16, macOS Ventura 13, watchOS 9.1. An app EPSS 0.6%