Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by vendor Gnu Subscribe
Filtered by product Cflow
Total 3 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2020-23856 2 Fedoraproject, Gnu 2 Fedora, Cflow 2022-01-01 2.1 LOW 5.5 MEDIUM
Use-after-Free vulnerability in cflow 1.6 in the void call(char *name, int line) function at src/parser.c, which could cause a denial of service via the pointer variable caller->callee.
CVE-2019-16165 1 Gnu 1 Cflow 2019-09-10 4.3 MEDIUM 6.5 MEDIUM
GNU cflow through 1.6 has a use-after-free in the reference function in parser.c.
CVE-2019-16166 1 Gnu 1 Cflow 2019-09-10 4.3 MEDIUM 6.5 MEDIUM
GNU cflow through 1.6 has a heap-based buffer over-read in the nexttoken function in parser.c.