Falhas do tipo CWE-787

5.212 resultados

Escrita fora dos limites de memória

Ocorre quando um programa escreve dados em um endereço de memória fora da área alocada para um buffer ou variável. O código não valida o tamanho ou índice antes de gravar, permitindo sobrescrita de dados adjacentes, corrupção de estruturas críticas ou execução de código arbitrário.

Exemplo

Um formulário web que copia dados do usuário para um buffer de 256 bytes sem validar o tamanho da entrada. Se o atacante envia 500 bytes, a escrita transborda e sobrescreve a pilha, podendo hijackear o endereço de retorno da função.

Como mitigar

Use funções seguras de cópia (strncpy, strlcpy ao invés de strcpy; memcpy com tamanho máximo explícito) e sempre valide comprimento e índices antes de escrever. Em linguagens modernas, prefira estruturas com bounds-checking automático (arrays em Java, Rust, etc).

CVE-2022-41597LOWThe phones have the heap overflow, out-of-bounds read, and null pointer vulnerabilities in the fingerprint trusted application (TA).SuccessfEPSS 0.2%CVE-2026-39199LOWsnes9x 1.63 allows an out-of-bounds write and denial of service via a crafted .ups file.EPSS 0.2%CVE-2026-0030HIGHIn __host_check_page_state_range of mem_protect.c, there is a possible out of bounds write due to an incorrect bounds check. This could leadEPSS 0.2%CVE-2026-50064HIGHA vulnerability has been identified in Solid Edge SE2025 (All versions < V225.0 Update 15), Solid Edge SE2026 (All versions < V226.0 Update EPSS 0.2%CVE-2025-39809HIGHHID: intel-thc-hid: intel-quicki2c: Fix ACPI dsd ICRS/ISUB lengthEPSS 0.2%CVE-2026-50059HIGHA vulnerability has been identified in Solid Edge SE2025 (All versions < V225.0 Update 15), Solid Edge SE2026 (All versions < V226.0 Update EPSS 0.2%CVE-2026-46559MEDIUMImageMagick: Heap Buffer Over-Write of a single byte in the JP2 encoderEPSS 0.2%CVE-2026-86876MEDIUMAn out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOSEPSS 0.2%CVE-2018-9475HIGHIn HeadsetInterface::ClccResponse of btif_hf.cc, there is a possible out of bounds stack write due to a missing bounds check. This could leaEPSS 0.2%CVE-2026-0665MEDIUMQemu-kvm: heap off-by-one in kvm xen physdevop_map_pirqEPSS 0.2%CVE-2026-102715HIGHmDNS string-cache lookup matches on slot size, so a peer name aliases a shorter one and the response encoder writes past the packetEPSS 0.2%CVE-2026-16873HIGHVulnerabilities in IBM AIX and PowerVM VIOSEPSS 0.2%CVE-2026-16934HIGHVulnerabilities in IBM AIX and PowerVM VIOSEPSS 0.2%CVE-2026-16946HIGHVulnerabilities in IBM AIX and PowerVM VIOSEPSS 0.2%CVE-2026-40257MEDIUMOP-TEE has SHA-3 accelerated finalize heap overflowEPSS 0.2%CVE-2026-45258HIGHMultiple vulnerabilities in the sound(4) mmap pathEPSS 0.2%CVE-2026-30929HIGHImageMagick has a stack buffer overflow in MagnifyImageEPSS 0.2%CVE-2023-53274HIGHclk: mediatek: mt8183: Add back SSPM related clocksEPSS 0.2%CVE-2026-24262HIGHNVIDIA DGX Spark contains a vulnerability in the system firmware, where a privileged attacker could be able to cause an out-of-bounds write.EPSS 0.2%CVE-2026-81893MEDIUMGdk-pixbuf: gdk-pixbuf: invalid write in jpeg icc profile parser on error recoveryEPSS 0.2%