Falhas do tipo CWE-787

5.202 resultados

Escrita fora dos limites de memória

Ocorre quando um programa escreve dados em um endereço de memória fora da área alocada para um buffer ou variável. O código não valida o tamanho ou índice antes de gravar, permitindo sobrescrita de dados adjacentes, corrupção de estruturas críticas ou execução de código arbitrário.

Exemplo

Um formulário web que copia dados do usuário para um buffer de 256 bytes sem validar o tamanho da entrada. Se o atacante envia 500 bytes, a escrita transborda e sobrescreve a pilha, podendo hijackear o endereço de retorno da função.

Como mitigar

Use funções seguras de cópia (strncpy, strlcpy ao invés de strcpy; memcpy com tamanho máximo explícito) e sempre valide comprimento e índices antes de escrever. Em linguagens modernas, prefira estruturas com bounds-checking automático (arrays em Java, Rust, etc).

CVE-2022-44320MEDIUMPicoC Version 3.2.2 was discovered to contain a heap buffer overflow in the ExpressionCoerceFP function in expression.c when called from ExpEPSS 0.3%CVE-2024-3298HIGHOut-Of-Bounds Write and Type Confusion vulnerabilities exist in the DWG and DXF file reading procedure in eDrawings from Release SOLIDWORKS 2023 through Release SOLIDWORKS 2024EPSS 0.3%CVE-2024-45109HIGHPhotoshop Desktop | Out-of-bounds Write (CWE-787)EPSS 0.3%CVE-2022-44319MEDIUMPicoC Version 3.2.2 was discovered to contain a heap buffer overflow in the StdioBasePrintf function in cstdlib/string.c when called from ExEPSS 0.3%CVE-2023-4255MEDIUMW3m: out-of-bounds write in function checktype() in etc.c (incomplete fix for cve-2022-38223)EPSS 0.3%CVE-2022-44315MEDIUMPicoC Version 3.2.2 was discovered to contain a heap buffer overflow in the ExpressionAssign function in expression.c when called from ExpreEPSS 0.3%CVE-2025-9178HIGHRockwell Automation 1715 EtherNet/IP Comms Module Denial-Of-Service VulnerabilityEPSS 0.3%CVE-2024-45108HIGHPhotoshop Desktop | Out-of-bounds Write (CWE-787)EPSS 0.3%CVE-2026-19314HIGHFireware OS Integer Underflow in iked Allows Unauthenticated Denial of Service (DoS)EPSS 0.3%CVE-2026-5068HIGHbt: l2cap le coc: remote oob write via seg counter stored in net_buf user_dataEPSS 0.3%CVE-2022-44317MEDIUMPicoC Version 3.2.2 was discovered to contain a heap buffer overflow in the StdioOutPutc function in cstdlib/stdio.c when called from ExpresEPSS 0.3%CVE-2022-44316MEDIUMPicoC Version 3.2.2 was discovered to contain a heap buffer overflow in the LexGetStringConstant function in lex.c when called from LexScanGEPSS 0.3%CVE-2021-3623—A flaw was found in libtpms. The flaw can be triggered by specially-crafted TPM 2 command packets containing illegal values and may lead to EPSS 0.3%CVE-2024-20101CRITICALIn wlan driver, there is a possible out of bounds write due to improper input validation. This could lead to remote code execution with no aEPSS 0.3%CVE-2024-45114HIGHIllustrator | Out-of-bounds Write (CWE-787)EPSS 0.3%CVE-2022-31696HIGHVMware ESXi contains a memory corruption vulnerability that exists in the way it handles a network socket. A malicious actor with local acceEPSS 0.3%CVE-2025-22056HIGHnetfilter: nft_tunnel: fix geneve_opt type confusion additionEPSS 0.3%CVE-2023-47057HIGHZDI-CAN-21764: Adobe Premiere Pro MP4 File Parsing Out-Of-Bounds Write Remote Code Execution VulnerabilityEPSS 0.3%CVE-2024-27227CRITICALA malicious DNS response can trigger a number of OOB reads, writes, and other memory issuesEPSS 0.3%CVE-2020-18900LOWA heap-based buffer overflow in the libexe_io_handle_read_coff_optional_header function of libyal libexe before 20181128. NOTE: the vendor hEPSS 0.3%