目标达成 感谢每一位支持者 — 我们达成了 100% 目标!

目标: 1000 元 · 已筹: 1336

100%

CWE-787 跨界内存写 类漏洞列表 2750

CWE-787 跨界内存写 类弱点 2750 条 CVE 漏洞汇总,含 AI 中文分析。

CWE-787 越界写入是一种严重的内存安全漏洞,指程序向缓冲区边界之外或起始位置之前写入数据。攻击者利用此缺陷可覆盖相邻内存,导致程序崩溃、数据损坏,甚至通过精心构造的 payload 实现任意代码执行,从而完全控制目标系统。开发者应避免此类风险,需严格实施边界检查,使用安全的内存管理函数,启用编译器防护机制,并遵循最小权限原则,确保所有内存访问均在合法范围内。

MITRE CWE 官方描述
CWE:CWE-787 Out-of-bounds Write 英文:The product writes data past the end, or before the beginning, of the intended buffer. 译文:产品将数据写入预期缓冲区(buffer)的末尾之外或起始位置之前。
常见影响 (3)
Integrity Modify Memory, Execute Unauthorized Code or Commands
Write operations could cause memory corruption. In some cases, an adversary can modify control data such as return addresses in order to execute unexpected code.
Availability DoS: Crash, Exit, or Restart
Attempting to access out-of-range, invalid, or unauthorized memory could cause the product to crash.
Other Unexpected State
Subsequent write operations can produce undefined or unexpected results.
缓解措施 (5)
Requirements Use a language that does not allow this weakness to occur or provides constructs that make this weakness easier to avoid. For example, many languages that perform their own memory management, such as Java and Perl, are not subject to buffer overflows. Other languages, such as Ada and C#, typically provide overflow protection, but the protection can be disabled by the programmer. Be wary that a lan…
Architecture and Design Use a vetted library or framework that does not allow this weakness to occur or provides constructs that make this weakness easier to avoid. Examples include the Safe C String Library (SafeStr) by Messier and Viega [REF-57], and the Strsafe.h library from Microsoft [REF-56]. These libraries provide safer versions of overflow-prone string-handling functions.
Operation, Build and Compilation Use automatic buffer overflow detection mechanisms that are offered by certain compilers or compiler extensions. Examples include: the Microsoft Visual Studio /GS flag, Fedora/Red Hat FORTIFY_SOURCE GCC flag, StackGuard, and ProPolice, which provide various mechanisms including canary-based detection and range/index checking. D3-SFCV (Stack Frame Canary Validation) from D3FEND [REF-1334] discusses…
Effectiveness: Defense in Depth
Implementation Consider adhering to the following rules when allocating and managing an application's memory: Double check that the buffer is as large as specified. When using functions that accept a number of bytes to copy, such as strncpy(), be aware that if the destination buffer size is equal to the source buffer size, it may not NULL-terminate the string. Check buffer boundaries if accessing the buffer in a…
Operation, Build and Compilation Run or compile the software using features or extensions that randomly arrange the positions of a program's executable and libraries in memory. Because this makes the addresses unpredictable, it can prevent an attacker from reliably jumping to exploitable code. Examples include Address Space Layout Randomization (ASLR) [REF-58] [REF-60] and Position-Independent Executables (PIE) [REF-64]. Imported…
Effectiveness: Defense in Depth
代码示例 (2)
The following code attempts to save four different identification numbers into an array.
int id_sequence[3]; /* Populate the id array. */ id_sequence[0] = 123; id_sequence[1] = 234; id_sequence[2] = 345; id_sequence[3] = 456;
Bad · C
In the following code, it is possible to request that memcpy move a much larger segment of memory than assumed:
int returnChunkSize(void *) { /* if chunk info is valid, return the size of usable memory, * else, return -1 to indicate an error */ ... } int main() { ... memcpy(destBuf, srcBuf, (returnChunkSize(destBuf)-1)); ... }
Bad · C
CVE ID 标题 CVSS 风险等级 Published
CVE-2026-94054 Exim 4.100.1前Proxy-Protocol致越界写入 — Exim 7.0 High 2026-09-19
CVE-2026-93894 Vinyl Cache 9.0、2 工作区缓冲区溢出致远程拒绝服务 — Vinyl Cache 2.3 Low 2026-09-18
CVE-2026-75892 PDP地址译码越界写入漏洞 — osmo-ggsn - - 2026-09-18
CVE-2026-91142 Cockpit ilp32平台整数溢出导致lastlog条目地址错误 — Red Hat Enterprise Linux 10 3.6 Low 2026-09-18
CVE-2026-84444 libheif 未压缩瓦片图像编码越界写入漏洞 — libheif 7.4 High 2026-09-18
CVE-2026-84383 libheif堆缓冲区溢出漏洞 — libheif 9.8 Critical 2026-09-18
CVE-2026-63638 OpenImageIO Cineon 无效位深堆越界写漏洞 — OpenImageIO 8.3 High 2026-09-18
CVE-2026-63419 OpenImageIO ZBUFFER越界写漏洞 — OpenImageIO 7.8 High 2026-09-18
CVE-2026-10027 IBM MQ队列管理器未认证远程代码执行漏洞 — MQ 8.1 High 2026-09-18
CVE-2026-81627 Qemu-kvm 远程代码执行漏洞 — Red Hat Enterprise Linux 10 6.7 Medium 2026-09-18
CVE-2026-15579 某以太网交换机Web登录溢出致DoS — TN-4500B Series 8.8 High 2026-09-18
CVE-2026-93451 Snappy-java 1.1.10.8 缓冲区溢出漏洞 — snappy-java 6.5 Medium 2026-09-17
CVE-2026-93452 snappy-java 1.1.10.8 压缩函数缓冲区溢出漏洞 — snappy-java 7.5 High 2026-09-17
CVE-2026-54634 Hamlib rigctld 堆溢出及信息泄露漏洞 — Hamlib 7.3 High 2026-09-17
CVE-2026-73639 Perl Imager::File::PNG 1.004 之前版本缓冲区溢出 - - 2026-09-17
CVE-2026-93393 Windows Secure Channel 堆溢出漏洞 — C Driver 8.1 High 2026-09-17
CVE-2026-93015 BTstack 1.8.2 A2DP发现越界写入漏洞 — BTstack 6.3 Medium 2026-09-17
CVE-2026-92880 vgmstream vadpcm_read_coefs_be 越界写漏洞 — vgmstream 6.3 Medium 2026-09-17
CVE-2026-25280 DSP Service 越界写入漏洞 — Snapdragon 7.8 High 2026-09-17
CVE-2026-24074 Video组件越界写入漏洞 — Snapdragon 7.8 High 2026-09-17
CVE-2026-24073 Video 越界写漏洞 — Snapdragon 7.8 High 2026-09-17
CVE-2026-92786 LightGBM 4.7.0 越界写入漏洞 — LightGBM 7.8 High 2026-09-16
CVE-2026-91097 HP Linux Imaging and Printing软件多重漏洞 — HP Linux Imaging and Printing Software (HPLIP) 7.0 High 2026-09-16
CVE-2026-86107 安全通告0180 — VeloCloud 5.9 Medium 2026-09-16
CVE-2026-91711 Google Chrome 缓冲区错误漏洞 — Chrome - - 2026-09-15
CVE-2026-92177 pdfforge PDF Architect 解析OOB写RCE漏洞 — PDF Architect - - 2026-09-15
CVE-2026-92179 PDF Architect PDF解析越界写远程代码执行漏洞 — PDF Architect - - 2026-09-15
CVE-2026-19885 OriginLab Origin Viewer OGWU文件解析越界写远程代码执行 — Origin Viewer - - 2026-09-15
CVE-2026-19773 libwebsockets HTTP/2 HPACK 路径头解析远程代码执行 — libwebsockets - - 2026-09-15
CVE-2026-11728 IBM MQ .NET 客户端远程代码执行漏洞 — MQ 8.1 High 2026-09-15

CWE-787(跨界内存写) 是常见的弱点类别,本平台收录该类弱点关联的 2750 条 CVE 漏洞。