Falhas do tipo CWE-121

3.839 resultados

Estouro de buffer na pilha

Ocorre quando código escreve mais dados em um buffer alocado na pilha do que sua capacidade permite, sobrescrevendo dados adjacentes (variáveis, endereços de retorno). Um atacante pode explorar isso para executar código arbitrário ou crashar a aplicação alterando o fluxo de execução.

Exemplo

Uma função C que copia uma string do usuário diretamente em um array local sem validar tamanho: `char buffer[10]; strcpy(buffer, user_input);`. Se user_input tiver 50 caracteres, os 40 extras sobrescrevem a pilha, incluindo potencialmente o endereço de retorno da função.

Como mitigar

Use funções seguras que limitam escrita (strncpy, snprintf em vez de strcpy/sprintf), valide tamanho de entrada antes de copiar, ative proteções do compilador (stack canaries, ASLR) e use ferramentas de análise estática para detectar cópias sem limite.

CVE-2025-60570HIGHD-Link DIR600L Ax FW116WWb01 was discovered to contain a buffer overflow via the curTime parameter in the function formLogDnsquery.EPSS 0.5%CVE-2026-10120HIGHTRENDnet TEW-432BRP formSetFirewallRule stack-based overflowEPSS 0.5%CVE-2025-60571HIGHD-Link DIR600LAx FW116WWb01 was discovered to contain a buffer overflow via the curTime parameter in the function formSetQoS.EPSS 0.5%CVE-2026-20345HIGHClamAV GPT File Format Processing Memory Corruption VulnerabilityEPSS 0.5%CVE-2026-101003MEDIUMCesanta Mongoose MQTT Broker main.c fn stack-based overflowEPSS 0.5%CVE-2026-41956HIGHBIG-IP TMM VulnerabilityEPSS 0.5%CVE-2026-57161HIGHPJSIP: Stack overflow handling Service-Route headers in a registration responseEPSS 0.5%CVE-2025-30472CRITICALCorosync through 3.1.9, if encryption is disabled or the attacker knows the encryption key, has a stack-based buffer overflow in orf_token_eEPSS 0.5%CVE-2024-28563MEDIUMBuffer Overflow vulnerability in open source FreeImage v.3.19.0 [r1909] allows a local attacker to cause a denial of service (DoS) via the IEPSS 0.5%CVE-2026-40553MEDIUMStack-based buffer overflow in gawkEPSS 0.5%CVE-2026-77101HIGHCommServe Stack-based Buffer OverflowEPSS 0.5%CVE-2025-0438HIGHStack buffer overflow in Tracing in Google Chrome prior to 132.0.6834.83 allowed a remote attacker to potentially exploit stack corruption vEPSS 0.5%CVE-2026-75368HIGHA stack overflow in the loadRawData function of SpaceDot AcubeSAT OBC software commit eaf90ec allows attackers to cause a Denial of Service EPSS 0.5%CVE-2026-36770HIGHShenzhen Tenda Technology Co., Ltd Tenda US_W3V1.0BR v1.0.0.3 was discovered to contain a stack overflow in the Go parameter of the ask_to_rEPSS 0.5%CVE-2026-50039HIGHStack-based Buffer Overflow in MZ Automation libIEC61850EPSS 0.5%CVE-2026-56455MEDIUMHCL DFXAnalytics is affected by a Buffer Overflow vulnerability that can lead to a Denial of Service (DoS).EPSS 0.5%CVE-2026-36771HIGHShenzhen Tenda Technology Co., Ltd Tenda W3 Wireless Router v1.0.0.3(2204) was discovered to contain a stack overflow in the wl_radio parameEPSS 0.5%CVE-2025-28030HIGHTOTOLINK A810R V4.1.2cu.5182_B20201026 was discovered to contain a stack overflow via the startTime and endTime parameters in setParentalRulEPSS 0.5%CVE-2026-36784HIGHShenzhen Tenda Technology Co., Ltd Tenda O3 Wireless Router v1.0.0.5(4180) was discovered to contain a stack overflow in the ip parameter ofEPSS 0.5%CVE-2026-36837HIGHTOTOLINK A3002RU V3 <= V3.0.0-B20220304.1804 was discovered to contain a stack-based buffer overflow via the hostname parameter in the formMEPSS 0.5%