Falhas do tipo CWE-120

3.167 resultados

Estouro de buffer clássico

A aplicação copia dados em um buffer sem validar o tamanho, permitindo que um atacante sobrescreva memória adjacente. Isso pode corromper variáveis, desviar o fluxo de execução ou injetar código malicioso que será executado com os mesmos privilégios da aplicação.

Exemplo

Um formulário web aceita um nome de usuário e o copia direto em um array de 32 bytes sem checar comprimento. Um atacante envia 200 bytes; o excesso sobrescreve o endereço de retorno da função, desviando a execução para código dele. Comum em CGI antigos, serviços network e binários C/C++ mal escritos.

Como mitigar

Use funções seguras (strncpy, strlcpy em vez de strcpy; snprintf em vez de sprintf) que respeitam limites. Sempre valide e sanitize entrada externa antes de copiar. Em C moderno, considere AddressSanitizer ou ferramentas estáticas para detectar cópias inseguras em tempo de compilação.

CVE-2018-25423MEDIUMArm Whois 3.11 Denial of Service via Buffer OverflowEPSS 0.1%CVE-2023-28570MEDIUMBuffer Copy without Checking Size of Input in AudioEPSS 0.1%CVE-2020-8941MEDIUMUnchecked buffer overrun in enc_untrusted_inet_ptonEPSS 0.1%CVE-2018-25323HIGHAllok AVI DivX MPEG to DVD Converter 2.6.1217 Buffer Overflow SEHEPSS 0.1%CVE-2024-56452MEDIUMVulnerability of input parameters not being verified during glTF model loading in the 3D engine module Impact: Successful exploitation of thEPSS 0.1%CVE-2018-25288MEDIUMStyleWriter 1.0 Denial of Service via Pattern InputEPSS 0.1%CVE-2018-25293MEDIUMPrime95 29.4b7 Denial of Service via Proxy Password FieldEPSS 0.1%CVE-2018-25292MEDIUMBome Restorator 1793 Denial of Service via Buffer OverflowEPSS 0.1%CVE-2018-25289MEDIUMSoftdisk 3.0.3 Buffer Overflow Denial of ServiceEPSS 0.1%CVE-2018-25277MEDIUMPixGPS 1.1.8 Buffer Overflow Denial of ServiceEPSS 0.1%CVE-2018-25286MEDIUMEasy PhotoResQ 1.0 Buffer Overflow Denial of ServiceEPSS 0.1%CVE-2026-5404MEDIUMBuffer Copy without Checking Size of Input ('Classic Buffer Overflow') in WiresharkEPSS 0.1%CVE-2018-25275MEDIUMFaleemi Plus 1.0.2 Denial of Service via Buffer OverflowEPSS 0.1%CVE-2018-25291MEDIUMProject64 2.3.2 Denial of Service via Plugin DirectoryEPSS 0.1%CVE-2020-8940MEDIUMUnchecked buffer overrun in enc_untrusted_recvmsgEPSS 0.1%CVE-2020-8942MEDIUMUnchecked buffer overrun in enc_untrusted_readEPSS 0.1%CVE-2026-24799MEDIUMA heap-based buffer over-read or buffer overflow in davisking/dlibEPSS 0.1%CVE-2022-42756HIGHIn sensor driver, there is a possible buffer overflow due to a missing bounds check. This could lead to local denial of service in kernel.EPSS 0.1%CVE-2020-8943MEDIUMUnchecked buffer overrun in enc_untrusted_recvfromEPSS 0.1%CVE-2026-19568HIGHSVG File Parsing Memory Corruption Vulnerability in Autodesk 3ds MaxEPSS 0.1%