Falhas do tipo CWE-121

3.834 resultados

Estouro de buffer na pilha

Ocorre quando código escreve mais dados em um buffer alocado na pilha do que sua capacidade permite, sobrescrevendo dados adjacentes (variáveis, endereços de retorno). Um atacante pode explorar isso para executar código arbitrário ou crashar a aplicação alterando o fluxo de execução.

Exemplo

Uma função C que copia uma string do usuário diretamente em um array local sem validar tamanho: `char buffer[10]; strcpy(buffer, user_input);`. Se user_input tiver 50 caracteres, os 40 extras sobrescrevem a pilha, incluindo potencialmente o endereço de retorno da função.

Como mitigar

Use funções seguras que limitam escrita (strncpy, snprintf em vez de strcpy/sprintf), valide tamanho de entrada antes de copiar, ative proteções do compilador (stack canaries, ASLR) e use ferramentas de análise estática para detectar cópias sem limite.

CVE-2024-40535CRITICALShenzhen Libituo Technology Co., Ltd LBT-T300-T400 v3.2 was discovered to contain a stack overflow via the apn_name_3g parameter in the confEPSS 0.6%CVE-2024-38246HIGHWin32k Elevation of Privilege VulnerabilityEPSS 0.6%CVE-2024-41881HIGHSDoP versions prior to 1.11 fails to handle appropriately some parameters inside the input data, resulting in a stack-based buffer overflow EPSS 0.6%CVE-2024-28924MEDIUMSecure Boot Security Feature Bypass VulnerabilityEPSS 0.6%CVE-2026-42996CRITICALJS8Call through 2.3.1 and JS8Call-improved before 3.0 have a stack-based buffer overflow via a radio transmission of @APRSIS GRID followed bEPSS 0.6%CVE-2026-44634HIGHStack buffer overflows in SimpleBLEEPSS 0.6%CVE-2025-26382CRITICALJohnson Controls Software House iSTAR Configuration Utility (ICU) ToolEPSS 0.6%CVE-2025-70238HIGHStack buffer overflow vulnerability in D-Link DIR-513 v1.10 via the curTime parameter to goform/formSetWAN_Wizard52.EPSS 0.6%CVE-2025-70243HIGHStack buffer overflow vulnerability in D-Link DIR-513 v1.10 via the curTime parameter to goform/formSetWAN_Wizard534.EPSS 0.6%CVE-2023-28393MEDIUMA stack-based buffer overflow vulnerability exists in the tif_processing_dng_channel_count functionality of Accusoft ImageGear 20.1. A speciEPSS 0.6%CVE-2024-10918MEDIUMStack-based Buffer Overflow in libmodbus libraryEPSS 0.6%CVE-2026-26240LOWFile Station 5EPSS 0.6%CVE-2026-26241LOWFile Station 5EPSS 0.6%CVE-2022-3296HIGHStack-based Buffer Overflow in vim/vimEPSS 0.6%CVE-2023-50434CRITICALemdns_resolve_raw in emdns.c in emdns through fbd1eef calls strlen with an input that may not be '\0' terminated, leading to a stack-based bEPSS 0.6%CVE-2026-51603HIGHA stack-based buffer overflow vulnerability in the RTSP service of Tenda CP3 V3.0 (firmware V31.1.9.91) allows an unauthenticated remote attEPSS 0.6%CVE-2024-34308HIGHTOTOLINK LR350 V9.3.5u.6369_B20220309 was discovered to contain a stack overflow via the password parameter in the function urldecode.EPSS 0.6%CVE-2024-34171HIGHFuji Electric Monitouch V-SFT Stack-Based Buffer OverflowEPSS 0.6%CVE-2026-51602HIGHA stack-based buffer overflow vulnerability in the RTSP service of Tenda CP3 V3.0 (firmware V31.1.9.91) allows an unauthenticated remote attEPSS 0.6%CVE-2025-29387HIGHIn Tenda AC9 v1.0 V15.03.05.14_multi, the wanSpeed parameter of /goform/AdvSetMacMtuWan has a stack overflow vulnerability, which can lead tEPSS 0.6%