İçeriğe atla
Noroxi

CWE-120 · 3.626 kayıt

Sınır kontrolsüz arabellek kopyalama

Neden olur?

Veri kopyalanırken kaynağın uzunluğu, hedef arabelleğin boyutuyla karşılaştırılmıyor. Fazla veri, bitişik belleğin üzerine yazılır.

Hatalı ve düzeltilmiş kod

Temsili ders örneği. Vurgulu satırlar hatanın ve düzeltmenin yeridir.

Hatalı

c
char buf[256];memcpy(buf, pkt->data, pkt->len);

Düzeltilmiş

c
char buf[256];if (pkt->len > sizeof(buf)) {  return -EINVAL;}memcpy(buf, pkt->data, pkt->len);

Nasıl önlenir?

  1. 01Kopyalamadan önce uzunluğu hedef boyutla karşılaştırın.
  2. 02Uzunluk alanını ağdan gelen veriden değil, doğrulanmış sınırlardan alın.
  3. 03Derleyici korumalarını ve bellek güvenli dilleri tercih edin.

Bu sınıftaki CVE’ler

3.626 kayıt

  • Buffer overflow in the ScStoragePathFromUrl function in the WebDAV service in Internet Information Services (IIS) 6.0 in Microsoft Windows S

    KritikCVSS 9,8KEVSilahlaştırılmışEPSS %100

    microsoft · internet information services26 Mar 2017

  • Underflow in PHP-FPM can lead to RCE

    KritikCVSS 9,8KEVSilahlaştırılmışEPSS %100

    php · php28 Eki 2019

  • The NETGEAR WNR2000v5 router contains a buffer overflow in the hidden_lang_avi parameter when invoking the URL /apply.cgi?/lang_check.html.

    KritikCVSS 9,8KEVSilahlaştırılmışEPSS %83

    netgear · d6100 firmware30 Oca 2017

  • An issue was discovered in the base64d function in the SMTP listener in Exim before 4.90.1.

    KritikCVSS 9,8KEVSilahlaştırılmışEPSS %82

    exim · exim8 Şub 2018

  • Buffer overflow in Cisco Adaptive Security Appliance (ASA) Software through 9.4.2.3 on ASA 5500, ASA 5500-X, ASA Services Module, ASA 1000V,

    YüksekCVSS 8,8KEVSilahlaştırılmışEPSS %88

    cisco · pix firewall software18 Ağu 2016

  • A vulnerability in the VPN web server of Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Cisco Secure Firewall Threat D

    KritikCVSS 9,9KEVSilahlaştırılmışEPSS %71

    cisco · adaptive security appliance software25 Eyl 2025

  • Multiple buffer overflows in Adobe Reader and Acrobat 8.1.1 and earlier allow remote attackers to execute arbitrary code via a PDF file with

    YüksekCVSS 7,8KEVSilahlaştırılmışEPSS %87

    adobe · acrobat12 Şub 2008

  • D-Link Go-RT-AC750 GORTAC750_revA_v101b03 and GO-RT-AC750_revB_FWv200b02 are vulnerable to Buffer Overflow via cgibin, hnap_main,

    KritikCVSS 9,8KEVSilahlaştırılmışEPSS %56

    dlink · go-rt-ac750 firmware28 Ağu 2022

  • Buffer overflow in Microsoft Office 2003 SP3 and Office 2011 for Mac allows remote attackers to execute arbitrary code via crafted PNG data

    YüksekCVSS 7,8KEVSilahlaştırılmışEPSS %80

    microsoft · office11 Haz 2013

  • NETGEAR WNR2000v3 devices before 1.1.2.14, WNR2000v4 devices before 1.0.0.66, and WNR2000v5 devices before 1.0.0.42 allow authentication byp

    KritikCVSS 9,8KEVSilahlaştırılmışEPSS %46

    netgear · wnr2000 firmware26 May 2017

  • CVE-2010-2572
    79Bu hafta

    Buffer overflow in Microsoft PowerPoint 2002 SP3 and 2003 SP3 allows remote attackers to execute arbitrary code via a crafted PowerPoint 95

    YüksekCVSS 7,8KEVSilahlaştırılmışEPSS %59

    microsoft · powerpoint9 Kas 2010

  • CVE-2006-2492
    79Bu hafta

    Buffer overflow in Microsoft Word in Office 2000 SP3, Office XP SP3, Office 2003 Sp1 and SP2, and Microsoft Works Suites through 2006, allow

    YüksekCVSS 8,8KEVSilahlaştırılmışEPSS %48

    microsoft · office19 May 2006

  • CVE-2023-33010
    78Bu hafta

    A buffer overflow vulnerability in the ID processing function in Zyxel ATP series firmware versions 4.32 through 5.36 Patch 1, USG FLEX seri

    KritikCVSS 9,8KEVSilahlaştırılmışEPSS %29

    zyxel · atp100 firmware24 May 2023

  • CVE-2023-41064
    77Bu hafta

    A buffer overflow issue was addressed with improved memory handling.

    YüksekCVSS 7,8KEVSilahlaştırılmışEPSS %53

    apple · ipados7 Eyl 2023

  • CVE-2023-33009
    77Bu hafta

    A buffer overflow vulnerability in the notification function in Zyxel ATP series firmware versions 4.60 through 5.36 Patch 1, USG FLEX serie

    KritikCVSS 9,8KEVSilahlaştırılmışEPSS %28

    zyxel · atp100 firmware24 May 2023

  • CVE-2020-5135
    77Bu hafta

    A buffer overflow vulnerability in SonicOS allows a remote attacker to cause Denial of Service (DoS) and potentially execute arbitrary code

    KritikCVSS 9,8KEVSilahlaştırılmışEPSS %27

    sonicwall · sonicos12 Eki 2020

  • CVE-2016-0099
    72Bu hafta

    The Secondary Logon Service in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2

    YüksekCVSS 7,8KEVSilahlaştırılmışEPSS %37

    microsoft · windows 10 15079 Mar 2016

  • CVE-2020-15069
    72Bu hafta

    Sophos XG Firewall 17.x through v17.5 MR12 allows a Buffer Overflow and remote code execution via the HTTP/S Bookmarks feature for clientles

    KritikCVSS 9,8KEVSilahlaştırılmışEPSS %11

    sophos · xg firewall firmware29 Haz 2020

  • CVE-2013-0641
    71Bu hafta

    Buffer overflow in Adobe Reader and Acrobat 9.x before 9.5.4, 10.x before 10.1.6, and 11.x before 11.0.02 allows remote attackers to execute

    YüksekCVSS 7,8KEVSilahlaştırılmışEPSS %32

    adobe · acrobat13 Şub 2013

  • CVE-2011-4862
    68Bu hafta

    Buffer overflow in libtelnet/encrypt.c in telnetd in FreeBSD 7.3 through 9.0, MIT Kerberos Version 5 Applications (aka krb5-appl) 1.0.2 and

    KritikCVSS 10,0SilahlaştırılmışEPSS %95

    mit · krb5-appl24 Ara 2011

  • CVE-2020-11984
    66Bu hafta

    Apache HTTP server 2.4.32 to 2.4.44 mod_proxy_uwsgi info disclosure and possible RCE

    KritikCVSS 9,8Kavram kanıtıEPSS %90

    apache · http server7 Ağu 2020

  • CVE-2021-3711
    65Bu hafta

    SM2 Decryption Buffer Overflow

    KritikCVSS 9,8İstismar yokEPSS %88

    openssl · openssl24 Ağu 2021

  • CVE-2009-3023
    63Bu hafta

    Buffer overflow in the FTP Service in Microsoft Internet Information Services (IIS) 5.0 through 6.0 allows remote authenticated users to exe

    KritikCVSS 9,0SilahlaştırılmışEPSS %91

    microsoft · internet information server31 Ağu 2009

  • CVE-2004-0210
    63Bu hafta

    The POSIX component of Microsoft Windows NT and Windows 2000 allows local users to execute arbitrary code via certain parameters, possibly b

    YüksekCVSS 7,8KEVSilahlaştırılmışEPSS %7

    microsoft · interix6 Ağu 2004

  • CVE-2020-8012
    62Bu hafta

    CA Unified Infrastructure Management (Nimsoft/UIM) 20.1, 20.3.x, and 9.20 and below contains a buffer overflow vulnerability in the robot (c

    KritikCVSS 9,8SilahlaştırılmışEPSS %77

    broadcom · unified infrastructure management18 Şub 2020

Tüm zafiyet sınıfları