Falhas do tipo CWE-787

5.161 resultados

Escrita fora dos limites de memória

Ocorre quando um programa escreve dados em um endereço de memória fora da área alocada para um buffer ou variável. O código não valida o tamanho ou índice antes de gravar, permitindo sobrescrita de dados adjacentes, corrupção de estruturas críticas ou execução de código arbitrário.

Exemplo

Um formulário web que copia dados do usuário para um buffer de 256 bytes sem validar o tamanho da entrada. Se o atacante envia 500 bytes, a escrita transborda e sobrescreve a pilha, podendo hijackear o endereço de retorno da função.

Como mitigar

Use funções seguras de cópia (strncpy, strlcpy ao invés de strcpy; memcpy com tamanho máximo explícito) e sempre valide comprimento e índices antes de escrever. Em linguagens modernas, prefira estruturas com bounds-checking automático (arrays em Java, Rust, etc).

CVE-2022-48281MEDIUMprocessCropSelections in tools/tiffcrop.c in LibTIFF through 4.5.0 has a heap-based buffer overflow (e.g., "WRITE of size 307203") via a craEPSS 0.4%CVE-2026-44988HIGHLibVNCClient Tight Gradient decoding allows malicious server-triggered heap/stack OOB writesEPSS 0.4%CVE-2026-15579HIGHAn out-of-bounds write vulnerability exists in some of the Ethernet switches because of improper validation of the username field length durEPSS 0.4%CVE-2020-26312HIGHGHSL-2020-254: Arbitrary file read and/or write in dotmeshEPSS 0.4%CVE-2024-7352HIGHPDF-XChange Editor PDF File Parsing Out-Of-Bounds Write Remote Code Execution VulnerabilityEPSS 0.4%CVE-2026-13086CRITICALFireware OS Stack-Based Buffer Overflow in Mobile Security epm EndpointEPSS 0.4%CVE-2025-12026HIGHWatchGuard Firebox Authenticated Out of Bounds Write in certdEPSS 0.4%CVE-2026-54634HIGHHamlib: rigctld `send_raw` Stack Out-of-Bounds Write and Uninitialized Memory DisclosureEPSS 0.4%CVE-2025-64129HIGHZenitel TCIV-3+ Out-of-bounds WriteEPSS 0.4%CVE-2025-10920HIGHGIMP ICNS File Parsing Out-Of-Bounds Write Remote Code Execution VulnerabilityEPSS 0.4%CVE-2024-54523CRITICALThe issue was addressed with improved bounds checks. This issue is fixed in iOS 18.2 and iPadOS 18.2, macOS Sequoia 15.2, tvOS 18.2, watchOSEPSS 0.4%CVE-2023-39490HIGHPDF-XChange Editor PDF File Parsing Out-Of-Bounds Write Remote Code Execution VulnerabilityEPSS 0.4%CVE-2024-11515HIGHIrfanView JPM File Parsing Out-Of-Bounds Write Remote Code Execution VulnerabilityEPSS 0.4%CVE-2025-26596HIGHXorg: xwayland: heap overflow in xkbwritekeysyms()EPSS 0.4%CVE-2026-25990HIGHPillow has an out-of-bounds write when loading PSD imagesEPSS 0.4%CVE-2024-11517HIGHIrfanView JPM File Parsing Out-Of-Bounds Write Remote Code Execution VulnerabilityEPSS 0.4%CVE-2026-14191HIGHWinRAR / UnRAR RAR5 recovery-volume (.rev) out-of-bounds heap write in RecVolumes5::ReadHeaderEPSS 0.4%CVE-2023-5779MEDIUMcan: out of bounds in remove_rx_filter functionEPSS 0.4%CVE-2022-45283HIGHGPAC MP4box v2.0.0 was discovered to contain a stack overflow in the smil_parse_time_list parameter at /scenegraph/svg_attributes.c.EPSS 0.4%CVE-2026-3038HIGHLocal DoS and possible privilege escalation via routing socketsEPSS 0.4%