Falhas do tipo CWE-787

5.238 resultados

Escrita fora dos limites de memória

Ocorre quando um programa escreve dados em um endereço de memória fora da área alocada para um buffer ou variável. O código não valida o tamanho ou índice antes de gravar, permitindo sobrescrita de dados adjacentes, corrupção de estruturas críticas ou execução de código arbitrário.

Exemplo

Um formulário web que copia dados do usuário para um buffer de 256 bytes sem validar o tamanho da entrada. Se o atacante envia 500 bytes, a escrita transborda e sobrescreve a pilha, podendo hijackear o endereço de retorno da função.

Como mitigar

Use funções seguras de cópia (strncpy, strlcpy ao invés de strcpy; memcpy com tamanho máximo explícito) e sempre valide comprimento e índices antes de escrever. Em linguagens modernas, prefira estruturas com bounds-checking automático (arrays em Java, Rust, etc).

CVE-2024-20115MEDIUMIn ccu, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System EPSS 0.1%CVE-2018-9414HIGHIn gattServerSendResponseNative of com_android_bluetooth_gatt.cpp, there is a possible out of bounds stack write due to a missing bounds cheEPSS 0.1%CVE-2025-32316MEDIUMIn gralloc4, there is a possible out of bounds write due to a missing bounds check. This could lead to local information disclosure with no EPSS 0.1%CVE-2024-20109MEDIUMIn ccu, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System EPSS 0.1%CVE-2026-21384MEDIUMOut-of-bounds Write in Camera DriverEPSS 0.1%CVE-2024-20113MEDIUMIn ccu, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System EPSS 0.1%CVE-2024-32917HIGHIn pl330_dma_from_peri_start() of fp_spi_dma.c, there is a possible out of bounds write due to a missing bounds check. This could lead to loEPSS 0.1%CVE-2025-36931HIGHIn GetHostAddress of gxp_buffer.h, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalatioEPSS 0.1%CVE-2025-36925HIGHIn WAVES_send_data_to_dsp of libaoc_waves.c, there is a possible out of bounds write due to a missing bounds check. This could lead to localEPSS 0.1%CVE-2024-47024HIGHIn vring_size of external/headers/include/virtio/virtio_ring.h, there is a possible out of bounds write due to an integer overflow. This couEPSS 0.1%CVE-2024-32921HIGHIn lwis_initialize_transaction_fences of lwis_fence.c, there is a possible out of bounds write due to a missing bounds check. This could leaEPSS 0.1%CVE-2025-59605HIGHOut-of-bounds Write in HLOSEPSS 0.1%CVE-2026-0123HIGHIn EfwApTransport::ProcessRxRing of efw_ap_transport.cc, there is a possible out of bounds write due to a missing bounds check. This could lEPSS 0.1%CVE-2026-0199HIGHIn gf_ta_test_set_config of gf_ta_test.c, there is a possible out-of-bounds write due to improper input validation. This could lead to localEPSS 0.1%CVE-2025-47373HIGHOut-of-bounds Write in AutomotiveEPSS 0.1%CVE-2025-59603HIGHOut-of-bounds Write in Computer VisionEPSS 0.1%CVE-2026-0138HIGHIn lwis_io_buffer_write of lwis_io_buffer.c, there is a possible out of bounds write due to memory corruption. This could lead to local escaEPSS 0.1%CVE-2026-25259HIGHOut-of-bounds Write in DSP ServiceEPSS 0.1%CVE-2026-24073HIGHOut-of-bounds Write in VideoEPSS 0.1%CVE-2026-25280HIGHOut-of-bounds Write in DSP ServiceEPSS 0.1%