Falhas do tipo CWE-787

5.237 resultados

Escrita fora dos limites de memória

Ocorre quando um programa escreve dados em um endereço de memória fora da área alocada para um buffer ou variável. O código não valida o tamanho ou índice antes de gravar, permitindo sobrescrita de dados adjacentes, corrupção de estruturas críticas ou execução de código arbitrário.

Exemplo

Um formulário web que copia dados do usuário para um buffer de 256 bytes sem validar o tamanho da entrada. Se o atacante envia 500 bytes, a escrita transborda e sobrescreve a pilha, podendo hijackear o endereço de retorno da função.

Como mitigar

Use funções seguras de cópia (strncpy, strlcpy ao invés de strcpy; memcpy com tamanho máximo explícito) e sempre valide comprimento e índices antes de escrever. Em linguagens modernas, prefira estruturas com bounds-checking automático (arrays em Java, Rust, etc).

CVE-2026-20441MEDIUMIn MAE, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege if a malicioEPSS 0.1%CVE-2024-53833HIGHIn prepare_response_locked of lwis_transaction.c, there is a possible out of bounds write due to improper input validation. This could leadEPSS 0.1%CVE-2025-20800HIGHIn mminfra, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege if a malEPSS 0.1%CVE-2024-49738HIGHIn writeInplace of Parcel.cpp, there is a possible out of bounds write. This could lead to local escalation of privilege with no additional EPSS 0.1%CVE-2026-20428MEDIUMIn display, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege if a malEPSS 0.1%CVE-2025-20767HIGHIn display, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege if a maliciEPSS 0.1%CVE-2024-53838HIGHIn Exynos_parsing_user_data_registered_itu_t_t35 of VendorVideoAPI.cpp, there is a possible out of bounds write due to an incorrect bounds cEPSS 0.1%CVE-2026-21370MEDIUMOut-of-bounds Write in Camera DriverEPSS 0.1%CVE-2018-9424HIGHIn CryptoPlugin::decrypt of CryptoPlugin.cpp, there is a possible out of bounds write due to a missing bounds check. This could lead to locaEPSS 0.1%CVE-2024-20120MEDIUMIn KeyInstall, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with EPSS 0.1%CVE-2024-47035HIGHIn vring_init of external/headers/include/virtio/virtio_ring.h, there is a possible out of bounds write due to a logic error in the code. ThEPSS 0.1%CVE-2024-20113MEDIUMIn ccu, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System EPSS 0.1%CVE-2024-20111MEDIUMIn ccu, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System EPSS 0.1%CVE-2025-59611MEDIUMOut-of-bounds Write in Core ServicesEPSS 0.1%CVE-2024-20115MEDIUMIn ccu, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System EPSS 0.1%CVE-2025-20636MEDIUMIn secmem, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege if a maliEPSS 0.1%CVE-2018-9469HIGHIn multiple functions of ShortcutService.java, there is a possible creation of a spoofed shortcut due to a missing permission check. This coEPSS 0.1%CVE-2018-9414HIGHIn gattServerSendResponseNative of com_android_bluetooth_gatt.cpp, there is a possible out of bounds stack write due to a missing bounds cheEPSS 0.1%CVE-2025-32316MEDIUMIn gralloc4, there is a possible out of bounds write due to a missing bounds check. This could lead to local information disclosure with no EPSS 0.1%CVE-2024-20114MEDIUMIn ccu, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System EPSS 0.1%