VendorsGNUcflowall versions
Vulnerabilities

GNU cflow

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

4CVEs
CVE-2023-2789
GNU cflow parser.c parse_variable_declaration denial of service
Published 2023-05-18 · Modified
7.5EPSS 0.012
CVE-2019-16165
GNU cflow through 1.6 has a use-after-free in the reference function in parser.c.
Published 2019-09-09 · Modified
6.5EPSS 0.011
CVE-2019-16166
GNU cflow through 1.6 has a heap-based buffer over-read in the nexttoken function in parser.c.
Published 2019-09-09 · Modified
6.5EPSS 0.011
CVE-2020-23856
Use-after-Free vulnerability in cflow 1.6 in the void call(char *name, int line) function at src/parser.c, which could cause a denial of service via the pointer variable caller->callee.
Published 2021-05-18 · Modified
5.5EPSS 0.004