Falhas do tipo CWE-787

5.172 resultados

Escrita fora dos limites de memória

Ocorre quando um programa escreve dados em um endereço de memória fora da área alocada para um buffer ou variável. O código não valida o tamanho ou índice antes de gravar, permitindo sobrescrita de dados adjacentes, corrupção de estruturas críticas ou execução de código arbitrário.

Exemplo

Um formulário web que copia dados do usuário para um buffer de 256 bytes sem validar o tamanho da entrada. Se o atacante envia 500 bytes, a escrita transborda e sobrescreve a pilha, podendo hijackear o endereço de retorno da função.

Como mitigar

Use funções seguras de cópia (strncpy, strlcpy ao invés de strcpy; memcpy com tamanho máximo explícito) e sempre valide comprimento e índices antes de escrever. Em linguagens modernas, prefira estruturas com bounds-checking automático (arrays em Java, Rust, etc).

CVE-2024-27327HIGHPDF-XChange Editor PDF File Parsing Out-Of-Bounds Write Remote Code Execution VulnerabilityEPSS 0.4%CVE-2025-1050HIGHSonos Era 300 Out-of-Bounds Write Remote Code Execution VulnerabilityEPSS 0.4%CVE-2024-27802HIGHAn out-of-bounds read was addressed with improved input validation. This issue is fixed in iOS 16.7.8 and iPadOS 16.7.8, iOS 17.5 and iPadOSEPSS 0.4%CVE-2022-35096MEDIUMSWFTools commit 772e55a2 was discovered to contain a heap-buffer overflow via draw_stroke at /gfxpoly/stroke.c.EPSS 0.4%CVE-2026-28918MEDIUMAn out-of-bounds access issue was addressed with improved bounds checking. This issue is fixed in iOS 26.5 and iPadOS 26.5, macOS Tahoe 26.5EPSS 0.4%CVE-2026-84519MEDIUMAn out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOSEPSS 0.4%CVE-2023-3110CRITICALBuffer overflow in S0 Decryption on Unify GatewayEPSS 0.4%CVE-2026-16901HIGHVulnerabilities in IBM AIX and PowerVM VIOSEPSS 0.4%CVE-2026-28966MEDIUMAn out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOSEPSS 0.4%CVE-2026-10673HIGHOut-of-bounds write in ADIN2111/ADIN1110 OA SPI Ethernet RX frame reassemblyEPSS 0.4%CVE-2026-6784HIGHMemory safety bugs fixed in Firefox 150 and Thunderbird 150EPSS 0.4%CVE-2026-16903CRITICALVulnerabilities in IBM AIX and PowerVM VIOSEPSS 0.4%CVE-2024-49748CRITICALIn gatts_process_primary_service_req of gatt_sr.cc, there is a possible out of bounds write due to a heap buffer overflow. This could lead tEPSS 0.4%CVE-2026-59186HIGHOpenEXR: Heap out-of-bounds write in TiledRgbaInputFile via integer overflow on 32-bit (ILP32) buildsEPSS 0.4%CVE-2023-50805HIGHA vulnerability was discovered in Samsung Mobile Processor, Wearable Processor, and Modems with versions Exynos 9820, Exynos 9825, Exynos 98EPSS 0.4%CVE-2022-48622HIGHIn GNOME GdkPixbuf (aka gdk-pixbuf) through 2.42.10, the ANI (Windows animated cursor) decoder encounters heap memory corruption (in ani_loaEPSS 0.4%CVE-2023-50807HIGHA vulnerability was discovered in Samsung Wearable Processor and Modems with versions Exynos 9110, Exynos Modem 5123, Exynos Modem 5300 thatEPSS 0.4%CVE-2025-47728HIGHFile Parsing Memory Corruption in CNCSoft-G2EPSS 0.4%CVE-2022-32911HIGHThe issue was addressed with improved memory handling. This issue is fixed in macOS Monterey 12.6, iOS 15.7 and iPadOS 15.7, iOS 16, macOS BEPSS 0.4%CVE-2026-16847HIGHVulnerabilities in IBM AIX and PowerVM VIOSEPSS 0.4%