Falhas do tipo CWE-121

3.831 resultados

Estouro de buffer na pilha

Ocorre quando código escreve mais dados em um buffer alocado na pilha do que sua capacidade permite, sobrescrevendo dados adjacentes (variáveis, endereços de retorno). Um atacante pode explorar isso para executar código arbitrário ou crashar a aplicação alterando o fluxo de execução.

Exemplo

Uma função C que copia uma string do usuário diretamente em um array local sem validar tamanho: `char buffer[10]; strcpy(buffer, user_input);`. Se user_input tiver 50 caracteres, os 40 extras sobrescrevem a pilha, incluindo potencialmente o endereço de retorno da função.

Como mitigar

Use funções seguras que limitam escrita (strncpy, snprintf em vez de strcpy/sprintf), valide tamanho de entrada antes de copiar, ative proteções do compilador (stack canaries, ASLR) e use ferramentas de análise estática para detectar cópias sem limite.

CVE-2023-50734CRITICALA vulnerability has been identified in the PostScript interpreter in various Lexmark devices.EPSS 0.8%CVE-2026-6643HIGHA stack-based buffer overflow vulnerability in the VPN Clients on the ADMEPSS 0.8%CVE-2023-48264HIGHThe vulnerability allows an unauthenticated remote attacker to perform a Denial-of-Service (DoS) attack or, possibly, obtain Remote Code ExeEPSS 0.8%CVE-2023-48262HIGHThe vulnerability allows an unauthenticated remote attacker to perform a Denial-of-Service (DoS) attack or, possibly, obtain Remote Code ExeEPSS 0.8%CVE-2023-48265HIGHThe vulnerability allows an unauthenticated remote attacker to perform a Denial-of-Service (DoS) attack or, possibly, obtain Remote Code ExeEPSS 0.8%CVE-2023-48266HIGHThe vulnerability allows an unauthenticated remote attacker to perform a Denial-of-Service (DoS) attack or, possibly, obtain Remote Code ExeEPSS 0.8%CVE-2023-50362MEDIUMQTS, QuTS heroEPSS 0.8%CVE-2023-50361MEDIUMQTS, QuTS heroEPSS 0.8%CVE-2026-86318MEDIUMjava-json-tools json-patch JsonMergePatchDeserializer.java JsonMergePatch.fromJson stack-based overflowEPSS 0.8%CVE-2024-0962MEDIUMobgm libcoap Configuration File coap_oscore.c get_split_entry stack-based overflowEPSS 0.8%CVE-2023-44445HIGHNETGEAR CAX30 SSO Stack-based Buffer Overflow Remote Code Execution VulnerabilityEPSS 0.8%CVE-2024-23933MEDIUMSony XAV-AX5500 CarPlay TLV Stack-based Buffer Overflow Remote Code Execution VulnerabilityEPSS 0.8%CVE-2025-25745HIGHD-Link DIR-853 A1 FW1.20B07 was discovered to contain a stack-based buffer overflow vulnerability via the Password parameter in the SetQuickEPSS 0.8%CVE-2023-41184MEDIUMTP-Link Tapo C210 ActiveCells Stack-based Buffer Overflow Remote Code Execution VulnerabilityEPSS 0.8%CVE-2024-12352MEDIUMTOTOLINK EX1800T cstecgi.cgi sub_40662C stack-based overflowEPSS 0.8%CVE-2024-28535HIGHTenda AC18 V15.03.05.05 has a stack overflow vulnerability in the mitInterface parameter of fromAddressNat function.EPSS 0.8%CVE-2026-16877HIGHVulnerabilities in IBM AIX and PowerVM VIOSEPSS 0.8%CVE-2022-25949—The kernel mode driver kwatch3 of KINGSOFT Internet Security 9 Plus Version 2010.06.23.247 fails to properly handle crafted inputs, leading EPSS 0.8%CVE-2026-16911HIGHVulnerabilities in IBM AIX and PowerVM VIOSEPSS 0.8%CVE-2025-41426CRITICALVertiv Liebert RDU101 and UNITY Stack-based Buffer OverflowEPSS 0.8%