cppcheck analysis of libsmi_0.4.8+dfsg2-3.dsc
- ./tools/dump-types.c:261 [error] - Possible null pointer dereference: nodePtr
- ./tools/dump-types.c:396 [error] - Buffer access out-of-bounds
- ./tools/dump-types.c:412 [error] - Buffer access out-of-bounds
- ./tools/dump-types.c:419 [error] - Buffer access out-of-bounds
- ./tools/smidiff.c:1078 [error] - Common realloc mistake: "str" nulled but not freed upon failure
- ./tools/smidiff.c:1092 [error] - Common realloc mistake: "str" nulled but not freed upon failure
- ./tools/smidiff.c:1099 [error] - Common realloc mistake: "str" nulled but not freed upon failure
- ./tools/smidiff.c:1754 [error] - Common realloc mistake: "strIdxLst" nulled but not freed upon failure
- ./tools/smidiff.c:1062 [error] - Memory leak: minStr
- ./tools/smidiff.c:1062 [error] - Memory leak: maxStr
- ./tools/smidiff.c:1090 [error] - Memory leak: str
- ./tools/smidiff.c:1094 [error] - Memory leak: subRange
- ./tools/smidiff.c:1080 [error] - Undefined behaviour: str is used wrong in call to sprintf or snprintf. Quote: If copying takes place between objects that overlap as a result of a call to sprintf() or snprintf(), the results are undefined.
- ./tools/smidiff.c:1096 [error] - Undefined behaviour: str is used wrong in call to sprintf or snprintf. Quote: If copying takes place between objects that overlap as a result of a call to sprintf() or snprintf(), the results are undefined.
- ./tools/smidiff.c:1101 [error] - Undefined behaviour: str is used wrong in call to sprintf or snprintf. Quote: If copying takes place between objects that overlap as a result of a call to sprintf() or snprintf(), the results are undefined.
- ./tools/smidiff.c:1757 [error] - Undefined behaviour: strIdxLst is used wrong in call to sprintf or snprintf. Quote: If copying takes place between objects that overlap as a result of a call to sprintf() or snprintf(), the results are undefined.
Note: if you think the results reveal a security bug,
please don't hesitate to contact the
security team
This report was generated on Mon, 20 Dec 2010 21:16:25 +0000, based on results by cppcheck 1.46