目標達成 すべての支援者に感謝 — 100%達成しました!

目標: 1000 CNY · 調達済み: 1336 CNY

100%

CWE-787 跨界内存写 类漏洞列表 2432

CWE-787 跨界内存写 类弱点 2432 条 CVE 漏洞汇总,含 AI 中文分析。

CWE-787 越界写入是一种严重的内存安全漏洞,指程序向缓冲区边界之外或起始位置之前写入数据。攻击者利用此缺陷可覆盖相邻内存,导致程序崩溃、数据损坏,甚至通过精心构造的 payload 实现任意代码执行,从而完全控制目标系统。开发者应避免此类风险,需严格实施边界检查,使用安全的内存管理函数,启用编译器防护机制,并遵循最小权限原则,确保所有内存访问均在合法范围内。

MITRE CWE 官方描述
CWE:CWE-787 Out-of-bounds Write 英文:The product writes data past the end, or before the beginning, of the intended buffer. 译文:产品将数据写入预期缓冲区(buffer)的末尾之外或起始位置之前。
常见影响 (3)
IntegrityModify Memory, Execute Unauthorized Code or Commands
Write operations could cause memory corruption. In some cases, an adversary can modify control data such as return addresses in order to execute unexpected code.
AvailabilityDoS: Crash, Exit, or Restart
Attempting to access out-of-range, invalid, or unauthorized memory could cause the product to crash.
OtherUnexpected State
Subsequent write operations can produce undefined or unexpected results.
缓解措施 (5)
RequirementsUse a language that does not allow this weakness to occur or provides constructs that make this weakness easier to avoid. For example, many languages that perform their own memory management, such as Java and Perl, are not subject to buffer overflows. Other languages, such as Ada and C#, typically provide overflow protection, but the protection can be disabled by the programmer. Be wary that a lan…
Architecture and DesignUse a vetted library or framework that does not allow this weakness to occur or provides constructs that make this weakness easier to avoid. Examples include the Safe C String Library (SafeStr) by Messier and Viega [REF-57], and the Strsafe.h library from Microsoft [REF-56]. These libraries provide safer versions of overflow-prone string-handling functions.
Operation, Build and CompilationUse automatic buffer overflow detection mechanisms that are offered by certain compilers or compiler extensions. Examples include: the Microsoft Visual Studio /GS flag, Fedora/Red Hat FORTIFY_SOURCE GCC flag, StackGuard, and ProPolice, which provide various mechanisms including canary-based detection and range/index checking. D3-SFCV (Stack Frame Canary Validation) from D3FEND [REF-1334] discusses…
Effectiveness: Defense in Depth
ImplementationConsider adhering to the following rules when allocating and managing an application's memory: Double check that the buffer is as large as specified. When using functions that accept a number of bytes to copy, such as strncpy(), be aware that if the destination buffer size is equal to the source buffer size, it may not NULL-terminate the string. Check buffer boundaries if accessing the buffer in a…
Operation, Build and CompilationRun or compile the software using features or extensions that randomly arrange the positions of a program's executable and libraries in memory. Because this makes the addresses unpredictable, it can prevent an attacker from reliably jumping to exploitable code. Examples include Address Space Layout Randomization (ASLR) [REF-58] [REF-60] and Position-Independent Executables (PIE) [REF-64]. Imported…
Effectiveness: Defense in Depth
代码示例 (2)
The following code attempts to save four different identification numbers into an array.
int id_sequence[3]; /* Populate the id array. */ id_sequence[0] = 123; id_sequence[1] = 234; id_sequence[2] = 345; id_sequence[3] = 456;
Bad · C
In the following code, it is possible to request that memcpy move a much larger segment of memory than assumed:
int returnChunkSize(void *) { /* if chunk info is valid, return the size of usable memory, * else, return -1 to indicate an error */ ... } int main() { ... memcpy(destBuf, srcBuf, (returnChunkSize(destBuf)-1)); ... }
Bad · C
CVE IDタイトルCVSS深刻度公開日
CVE-2026-66041 FFmpeg 7.0 - 8.1.2 Heap Out-of-Bounds Write via vf_quirc Filter — FFmpeg 8.8 High2026-07-24
CVE-2026-45813 Apache NimBLE: Incorrect data validation in BASS add/modify source operation — Apache NimBLE--2026-07-24
CVE-2026-16807 Google Chrome 缓冲区错误漏洞 — Chrome--2026-07-23
CVE-2026-65706 FFmpeg 3.0 - 8.1.2 vf_swaprect Out-of-Bounds Write via NV12 Frame Processing — FFmpeg 7.8 High2026-07-23
CVE-2026-65705 FFmpeg 3.4 - 8.1.2 vf_floodfill Out-of-Bounds Write via filter_frame() — FFmpeg 7.8 High2026-07-23
CVE-2026-65704 FFmpeg 8.1.2 Out-of-Bounds Write via TY Demuxer and Shorten Decoder — FFmpeg 7.8 High2026-07-23
CVE-2026-65703 FFmpeg 2.7 - 8.1.2 Out-of-Bounds Write in TDSC Video Decoder — FFmpeg 7.8 High2026-07-23
CVE-2026-64835 FFmpeg 4.4 - 8.1.2 Out-of-Bounds Memory Access in ADX Audio Decoder — FFmpeg 8.8 High2026-07-22
CVE-2026-16413 Google Chrome 缓冲区错误漏洞 — Chrome--2026-07-21
CVE-2026-47178 libheif has Heap Out Of Bounds Write in unci subsystem — libheif 6.1 Medium2026-07-21
CVE-2026-59147 Data::DisjointSet::Shared versions before 0.02 for Perl allow out-of-bounds reads and writes via an unvalidated parent index in dsu_find — Data::DisjointSet::Shared--2026-07-21
CVE-2026-59146 Data::SpatialHash::Shared versions before 0.02 for Perl allow out-of-bounds reads and writes via unvalidated bucket, link and free-list indices in sph_walk_cell and sph_alloc_slot — Data::SpatialHash::Shared--2026-07-21
CVE-2026-15813 Kronosnet: kronosnet: memory corruption and out-of-bounds access via malformed network packet defragmentation — Red Hat Enterprise Linux 10 6.5 Medium2026-07-20
CVE-2026-16225 davenardella snap7 s7_peer.cpp NegotiatePDULength out-of-bounds write — snap7 6.3 Medium2026-07-19
CVE-2026-16095 Shibby Tomato rc setup_conntrack out-of-bounds write — Tomato 8.8 High2026-07-18
CVE-2026-15997 Native ARM SHA3 / SHAKE `restoreFullState` fails to detect size_t underflow in a crafted encoded state — BC-LTS--2026-07-16
CVE-2026-61389 AutomationDirect Productivity Suite Out-of-bounds Write — Productivity Suite 7.0 High2026-07-16
CVE-2026-60063 AutomationDirect Productivity Suite Out-of-bounds Write — Productivity Suite 7.0 High2026-07-16
CVE-2026-3842 Qemu-kvm: hyperv/syndbg: missing mapped-length guard after cpu_physical_memory_map causes host oob write 7.8 High2026-07-16
CVE-2026-10673 Out-of-bounds write in ADIN2111/ADIN1110 OA SPI Ethernet RX frame reassembly — zephyr 8.3 High2026-07-15
CVE-2026-48335 Illustrator | Out-of-bounds Write (CWE-787) — Illustrator Desktop 2026 7.8 High2026-07-14
CVE-2026-48336 Illustrator | Out-of-bounds Write (CWE-787) — Illustrator Desktop 2026 7.8 High2026-07-14
CVE-2026-48337 Illustrator | Out-of-bounds Write (CWE-787) — Illustrator Desktop 2026 7.8 High2026-07-14
CVE-2026-48343 Bridge | Out-of-bounds Write (CWE-787) — Adobe Bridge 7.8 High2026-07-14
CVE-2026-48311 Bridge | Out-of-bounds Write (CWE-787) — Adobe Bridge 7.8 High2026-07-14
CVE-2026-48341 Bridge | Out-of-bounds Write (CWE-787) — Adobe Bridge 7.8 High2026-07-14
CVE-2026-48274 After Effects | Out-of-bounds Write (CWE-787) — After Effects 7.8 High2026-07-14
CVE-2026-48367 After Effects | Out-of-bounds Write (CWE-787) — After Effects 7.8 High2026-07-14
CVE-2026-48369 Premiere Pro | Out-of-bounds Write (CWE-787) — Premiere 7.8 High2026-07-14
CVE-2026-48270 Premiere Pro | Out-of-bounds Write (CWE-787) — Premiere 7.8 High2026-07-14

CWE-787(跨界内存写) 是常见的弱点类别,本平台收录该类弱点关联的 2432 条 CVE 漏洞。