CWE-805—Buffer Access with Incorrect Length Value
PUBLISHEDweakness recordHigh
released 2010-02-16 · last modified 2025-12-11
Metadata
- CWE ID:
- CWE-805
- 摘要:
- Base
- 结构:
- Simple
- 状态:
- Incomplete
- 发布日期:
- 2010-02-16
- 更新日期:
- 2025-12-11
名称
Buffer Access with Incorrect Length Value
描述
The product uses a sequential operation to read or write a buffer, but it uses an incorrect length value that causes it to access memory that is outside of the bounds of the buffer.
When the length value exceeds the size of the destination, a buffer overflow could occur.
常见后果
- 范围:
- Integrity, Confidentiality, Availability
- 影响:
- Read Memory, Modify Memory, Execute Unauthorized Code or Commands
- 注释:
- Buffer overflows often can be used to execute arbitrary code, which is usually outside the scope of a program's implicit security policy. This can often be used to subvert any other security service.
- 范围:
- Availability
- 影响:
- Modify Memory, DoS: Crash, Exit, or Restart, DoS: Resource Consumption (CPU)
- 注释:
- Buffer overflows generally lead to crashes. Other attacks leading to lack of availability are possible, including putting the program into an infinite loop.