Falhas do tipo CWE-121

3.834 resultados

Estouro de buffer na pilha

Ocorre quando código escreve mais dados em um buffer alocado na pilha do que sua capacidade permite, sobrescrevendo dados adjacentes (variáveis, endereços de retorno). Um atacante pode explorar isso para executar código arbitrário ou crashar a aplicação alterando o fluxo de execução.

Exemplo

Uma função C que copia uma string do usuário diretamente em um array local sem validar tamanho: `char buffer[10]; strcpy(buffer, user_input);`. Se user_input tiver 50 caracteres, os 40 extras sobrescrevem a pilha, incluindo potencialmente o endereço de retorno da função.

Como mitigar

Use funções seguras que limitam escrita (strncpy, snprintf em vez de strcpy/sprintf), valide tamanho de entrada antes de copiar, ative proteções do compilador (stack canaries, ASLR) e use ferramentas de análise estática para detectar cópias sem limite.

CVE-2026-67967CRITICALBuffer Overflow vulnerability in Tenda W20E V16.01.0.6(2782) allows an attacker to execute arbitrary code. This is an incomplete fix for CVEEPSS 0.6%CVE-2025-63835MEDIUMA stack-based buffer overflow vulnerability was discovered in Tenda AC18 v15.03.05.05_multi. The vulnerability exists in the guestSsid paramEPSS 0.6%CVE-2024-37641HIGHTRENDnet TEW-814DAP v1_(FW1.01B01) was discovered to contain a stack overflow via the submit-url parameter at /formNewScheduleEPSS 0.6%CVE-2020-37119HIGHNsauditor 3.2.1.0 - Buffer Overflow (SEH+ASLR bypass (3 bytes overwrite))EPSS 0.6%CVE-2023-31024CRITICALCVEEPSS 0.6%CVE-2025-26336HIGHDell Chassis Management Controller Firmware for Dell PowerEdge FX2, version(s) prior to 2.40.200.202101130302, and Dell Chassis Management CEPSS 0.6%CVE-2024-37632MEDIUMTOTOLINK A3700R V9.1.2u.6165_20211012 was discovered to contain a stack overflow via the password parameter in function loginAuth .EPSS 0.6%CVE-2017-20230CRITICALStorable versions before 3.05 for Perl has a stack overflowEPSS 0.6%CVE-2025-15608HIGHBuffer Overflow in Network Probe Handling Function of TP-Link Archer AX53 + Archer AX55EPSS 0.6%CVE-2023-31272HIGHA stack-based buffer overflow vulnerability exists in the httpd do_wds functionality of Yifan YF325 v1.0_20221108. A specially crafted netwoEPSS 0.6%CVE-2026-57162HIGHPJSIP: Stack overflow parsing SDP a=crypto attributesEPSS 0.6%CVE-2026-36785HIGHShenzhen Tenda Technology Co., Ltd Tenda FH451 V1.0.0.9 was discovered to contain a stack overflow in the page parameter of the fromDhcpListEPSS 0.6%CVE-2023-50210HIGHD-Link G416 httpd API-AUTH Digest Processing Stack-based Buffer Overflow Remote Code Execution VulnerabilityEPSS 0.6%CVE-2023-50209HIGHD-Link G416 cfgsave Stack-Based Buffer Overflow Remote Code Execution VulnerabilityEPSS 0.6%CVE-2023-50208HIGHD-Link G416 ovpncfg Stack-based Buffer Overflow Remote Code Execution VulnerabilityEPSS 0.6%CVE-2026-45809HIGHOpenSIPS: Denial of Service in watcherinfo XML generation from oversized watcher URIEPSS 0.6%CVE-2023-50211HIGHD-Link G416 httpd API-AUTH Timestamp Processing Stack-based Buffer Overflow Remote Code Execution VulnerabilityEPSS 0.6%CVE-2023-31029CRITICALCVEEPSS 0.6%CVE-2021-25386CRITICALAn improper input validation vulnerability in sdfffd_parse_chunk_FVER() in libsdffextractor library prior to SMR MAY-2021 Release 1 allows aEPSS 0.6%CVE-2021-25385CRITICALAn improper input validation vulnerability in sdfffd_parse_chunk_PROP() in libsdffextractor library prior to SMR MAY-2021 Release 1 allows aEPSS 0.6%