Falhas do tipo CWE-1260

15 resultados

Manipulação inadequada de sobreposição entre áreas de memória protegida

Ocorre quando o software não valida corretamente se múltiplas regiões de memória protegida (como áreas criptografadas, buffers de segurança ou zonas isoladas) se sobrepõem ou conflitam. Essa falha permite que um atacante contorne proteções ou acesse dados que deveriam estar isolados, manipulando a lógica de alocação ou configuração de memória.

Exemplo

Um firmware de enclave de segurança aloca duas regiões protegidas sem verificar se seus limites se cruzam. Um invasor consegue mapear dados sensíveis em uma sobreposição intencional, lendo informações de uma região usando acesso à outra, efetivamente contornando o isolamento de memória.

Como mitigar

Implemente validação rigorosa de intervalos de memória antes de proteger regiões: verificar se novos ranges se sobrepõem aos existentes, rejeitar alocações conflitantes e manter um registro auditável de todas as zonas protegidas. Use APIs de gerenciamento de memória que forçam essa validação automaticamente.

CVE-2019-1164HIGHWindows Kernel Elevation of Privilege VulnerabilityEPSS 0.9%CVE-2025-1937HIGHMemory safety bugs fixed in Firefox 136, Thunderbird 136, Firefox ESR 115.21, Firefox ESR 128.8, and Thunderbird 128.8EPSS 0.5%CVE-2024-4778CRITICALMemory safety bugs present in Firefox 125. Some of these bugs showed evidence of memory corruption and we presume that with enough effort soEPSS 0.4%CVE-2019-25570MEDIUMRealTerm Serial Terminal 2.0.0.70 Denial of Service via Port FieldEPSS 0.2%CVE-2022-27813HIGHUnconfigured memory protection modules in Motorola MTM5000EPSS 0.2%CVE-2019-25585MEDIUMDeluge 1.3.15 Denial of Service via Webseeds FieldEPSS 0.2%CVE-2019-25559MEDIUMSpotPaltalk 1.1.5 Name/Key Field Denial of ServiceEPSS 0.2%CVE-2019-25592MEDIUMPHPRunner 10.1 Denial of Service via Dashboard Name FieldEPSS 0.2%CVE-2018-25238MEDIUMVSCO 1.1.1.0 Denial of Service via SearchEPSS 0.2%CVE-2019-25572MEDIUMNordVPN 6.19.6 Denial of Service via Email Field Buffer OverflowEPSS 0.2%CVE-2025-22889HIGHImproper handling of overlap between protected memory ranges for some Intel(R) Xeon(R) 6 processor with Intel(R) TDX may allow a privileged EPSS 0.1%CVE-2025-29948MEDIUMImproper access control in AMD Secure Encrypted Virtualization (SEV) firmware could allow a malicious hypervisor to bypass RMP protections, EPSS 0.1%CVE-2025-0012MEDIUMImproper handling of overlap between the segmented reverse map table (RMP) and system management mode (SMM) memory could allow a privileged EPSS 0.1%CVE-2018-25240MEDIUMWatchr 1.1.0.0 Denial of Service via SearchEPSS 0.1%CVE-2019-25602MEDIUMGSearch 1.0.1.0 Denial of Service via Search InputEPSS 0.1%