GNU cflow through 1.6 has a heap-based buffer over-read in the nexttoken function in parser.c.
References
Link Resource
https://lists.gnu.org/archive/html/bug-cflow/2019-04/msg00000.html Mailing List Vendor Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2019-09-09T15:37:41

Updated: 2019-09-09T15:37:41

Reserved: 2019-09-09T00:00:00


Link: CVE-2019-16166

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2019-09-09T17:15:13.720

Modified: 2019-09-10T13:50:29.957


Link: CVE-2019-16166

JSON object: View

cve-icon Redhat Information

No data.

CWE