gnutls-3.8.8-1.fc42
List of Findings
Error: GCC_ANALYZER_WARNING: [#def1]
gnutls-3.8.8-build/gnutls-3.8.8/doc/examples/ex-serv-x509.c: scope_hint: In function 'main'
gnutls-3.8.8-build/gnutls-3.8.8/doc/examples/ex-serv-x509.c:113:9: warning[-Wanalyzer-fd-use-without-check]: 'listen' on possibly invalid file descriptor 'listen_sd'
gnutls-3.8.8-build/gnutls-3.8.8/doc/examples/ex-serv-x509.c:17: included_from: Included from here.
gnutls-3.8.8-build/gnutls-3.8.8/doc/examples/ex-serv-x509.c:60:9: note: in expansion of macro 'CHECK'
gnutls-3.8.8-build/gnutls-3.8.8/doc/examples/ex-serv-x509.c:62:9: note: in expansion of macro 'CHECK'
gnutls-3.8.8-build/gnutls-3.8.8/doc/examples/ex-serv-x509.c:62:9: note: in expansion of macro 'CHECK'
gnutls-3.8.8-build/gnutls-3.8.8/doc/examples/ex-serv-x509.c:64:9: note: in expansion of macro 'CHECK'
gnutls-3.8.8-build/gnutls-3.8.8/doc/examples/ex-serv-x509.c:64:9: note: in expansion of macro 'CHECK'
gnutls-3.8.8-build/gnutls-3.8.8/doc/examples/ex-serv-x509.c:67:9: note: in expansion of macro 'CHECK'
gnutls-3.8.8-build/gnutls-3.8.8/doc/examples/ex-serv-x509.c:67:9: note: in expansion of macro 'CHECK'
gnutls-3.8.8-build/gnutls-3.8.8/doc/examples/ex-serv-x509.c:76:9: note: in expansion of macro 'CHECK'
gnutls-3.8.8-build/gnutls-3.8.8/doc/examples/ex-serv-x509.c:76:9: note: in expansion of macro 'CHECK'
gnutls-3.8.8-build/gnutls-3.8.8/doc/examples/ex-serv-x509.c:79:9: note: in expansion of macro 'CHECK'
gnutls-3.8.8-build/gnutls-3.8.8/doc/examples/ex-serv-x509.c:79:9: note: in expansion of macro 'CHECK'
gnutls-3.8.8-build/gnutls-3.8.8/doc/examples/ex-serv-x509.c:82:9: note: in expansion of macro 'CHECK'
gnutls-3.8.8-build/gnutls-3.8.8/doc/examples/ex-serv-x509.c:82:9: note: in expansion of macro 'CHECK'
Error: GCC_ANALYZER_WARNING (CWE-775): [#def2]
gnutls-3.8.8-build/gnutls-3.8.8/doc/examples/tlsproxy/tlsproxy.c: scope_hint: In function 'runlistener'
gnutls-3.8.8-build/gnutls-3.8.8/doc/examples/tlsproxy/tlsproxy.c:89:22: warning[-Wanalyzer-fd-leak]: leak of file descriptor 'bindtoaddress(listenaddr)'
Error: CPPCHECK_WARNING (CWE-457): [#def3]
gnutls-3.8.8-build/gnutls-3.8.8/gl/gl_anylinked_list2.h:952: error[uninitvar]: Uninitialized variables: result.count, result.i, result.j
Error: GCC_ANALYZER_WARNING (CWE-457): [#def4]
gnutls-3.8.8-build/gnutls-3.8.8/gl/gl_linkedhash_list.c:77: included_from: Included from here.
gnutls-3.8.8-build/gnutls-3.8.8/gl/gl_anylinked_list2.h: scope_hint: In function 'gl_linked_iterator'
gnutls-3.8.8-build/gnutls-3.8.8/gl/gl_anylinked_list2.h:952:10: warning[-Wanalyzer-use-of-uninitialized-value]: use of uninitialized value 'result.count'
Error: CPPCHECK_WARNING (CWE-457): [#def5]
gnutls-3.8.8-build/gnutls-3.8.8/gl/gl_anylinked_list2.h:1023: warning[uninitvar]: Uninitialized variables: result.count, result.i, result.j
Error: GCC_ANALYZER_WARNING (CWE-457): [#def6]
gnutls-3.8.8-build/gnutls-3.8.8/gl/gl_anylinked_list2.h: scope_hint: In function 'gl_linked_iterator_from_to'
gnutls-3.8.8-build/gnutls-3.8.8/gl/gl_anylinked_list2.h:1023:10: warning[-Wanalyzer-use-of-uninitialized-value]: use of uninitialized value 'result.count'
Error: GCC_ANALYZER_WARNING (CWE-401): [#def7]
gnutls-3.8.8-build/gnutls-3.8.8/native_build/gl/sys/stat.h:54: included_from: Included from here.
gnutls-3.8.8-build/gnutls-3.8.8/gl/read-file.c:23: included_from: Included from here.
gnutls-3.8.8-build/gnutls-3.8.8/gl/read-file.c: scope_hint: In function '_gnutls_fread_file'
gnutls-3.8.8-build/gnutls-3.8.8/gl/read-file.c:62:57: warning[-Wanalyzer-malloc-leak]: leak of '_gnutls_fread_file(rpl_fopen(filename, mode), flags, length)'
gnutls-3.8.8-build/gnutls-3.8.8/gl/read-file.c:18: included_from: Included from here.
gnutls-3.8.8-build/gnutls-3.8.8/gl/read-file.c:190:1: note: in expansion of macro 'read_file'
gnutls-3.8.8-build/gnutls-3.8.8/gl/read-file.c:202:9: note: in expansion of macro 'fread_file'
gnutls-3.8.8-build/gnutls-3.8.8/gl/read-file.c:202:9: note: in expansion of macro 'fread_file'
gnutls-3.8.8-build/gnutls-3.8.8/gl/read-file.c:52:1: note: in expansion of macro 'fread_file'
Error: GCC_ANALYZER_WARNING (CWE-401): [#def8]
gnutls-3.8.8-build/gnutls-3.8.8/gl/read-file.c:82:6: warning[-Wanalyzer-malloc-leak]: leak of '_gnutls_fread_file(rpl_fopen(filename, mode), flags, length)'
gnutls-3.8.8-build/gnutls-3.8.8/gl/read-file.c:190:1: note: in expansion of macro 'read_file'
gnutls-3.8.8-build/gnutls-3.8.8/gl/read-file.c:202:9: note: in expansion of macro 'fread_file'
gnutls-3.8.8-build/gnutls-3.8.8/gl/read-file.c:202:9: note: in expansion of macro 'fread_file'
gnutls-3.8.8-build/gnutls-3.8.8/gl/read-file.c:52:1: note: in expansion of macro 'fread_file'
Error: CPPCHECK_WARNING (CWE-457): [#def9]
gnutls-3.8.8-build/gnutls-3.8.8/lib/ext/compress_certificate.c:243: error[uninitvar]: Uninitialized variable: bytes
Error: CPPCHECK_WARNING (CWE-457): [#def10]
gnutls-3.8.8-build/gnutls-3.8.8/lib/pkcs11.c:4280: warning[uninitvar]: Uninitialized variable: finalized
Error: CPPCHECK_WARNING (CWE-562): [#def11]
gnutls-3.8.8-build/gnutls-3.8.8/lib/x509/output.c:210: error[returnDanglingLifetime]: Returning pointer to local variable 'oid' that will be invalid when returning.
Error: CPPCHECK_WARNING (CWE-562): [#def12]
gnutls-3.8.8-build/gnutls-3.8.8/lib/x509/output.c:232: error[returnDanglingLifetime]: Returning pointer to local variable 'oid' that will be invalid when returning.
Error: CPPCHECK_WARNING (CWE-562): [#def13]
gnutls-3.8.8-build/gnutls-3.8.8/lib/x509/output.c:258: error[returnDanglingLifetime]: Returning pointer to local variable 'oid' that will be invalid when returning.
Error: CPPCHECK_WARNING (CWE-562): [#def14]
gnutls-3.8.8-build/gnutls-3.8.8/lib/x509/output.c:280: error[returnDanglingLifetime]: Returning pointer to local variable 'oid' that will be invalid when returning.
Error: CPPCHECK_WARNING (CWE-562): [#def15]
gnutls-3.8.8-build/gnutls-3.8.8/lib/x509/output.c:306: error[returnDanglingLifetime]: Returning pointer to local variable 'oid' that will be invalid when returning.
Error: CPPCHECK_WARNING (CWE-190): [#def16]
gnutls-3.8.8-build/gnutls-3.8.8/lib/x509/verify-high.c:1426: error[integerOverflow]: Signed integer overflow for expression '-1-16'.
Error: CPPCHECK_WARNING (CWE-190): [#def17]
gnutls-3.8.8-build/gnutls-3.8.8/lib/x509/verify-high.c:1426: error[integerOverflow]: Signed integer overflow for expression '-128-16'.
Error: CPPCHECK_WARNING (CWE-190): [#def18]
gnutls-3.8.8-build/gnutls-3.8.8/lib/x509/verify-high.c:1426: error[integerOverflow]: Signed integer overflow for expression '-32768-16'.
Error: CPPCHECK_WARNING (CWE-190): [#def19]
gnutls-3.8.8-build/gnutls-3.8.8/lib/x509/verify-high.c:1426: error[integerOverflow]: Signed integer overflow for expression '0-16'.
Error: CPPCHECK_WARNING (CWE-401): [#def20]
gnutls-3.8.8-build/gnutls-3.8.8/src/certtool-common.c:83: error[memleakOnRealloc]: Common realloc mistake: 'lbuffer' nulled but not freed upon failure
Error: CPPCHECK_WARNING (CWE-457): [#def21]
gnutls-3.8.8-build/gnutls-3.8.8/src/cli.c:2132: warning[uninitvar]: Uninitialized variable: cert
Error: COMPILER_WARNING (CWE-252): [#def22]
gnutls-3.8.8-build/gnutls-3.8.8/src/danetool.c: scope_hint: In function 'cert_callback'
gnutls-3.8.8-build/gnutls-3.8.8/src/danetool.c:602:17: warning[-Wunused-result]: ignoring return value of 'write' declared with attribute 'warn_unused_result'
Error: CPPCHECK_WARNING (CWE-457): [#def23]
gnutls-3.8.8-build/gnutls-3.8.8/src/gl/gl_anylinked_list2.h:952: error[uninitvar]: Uninitialized variables: result.count, result.i, result.j
Error: GCC_ANALYZER_WARNING (CWE-457): [#def24]
gnutls-3.8.8-build/gnutls-3.8.8/src/gl/gl_linked_list.c:29: included_from: Included from here.
gnutls-3.8.8-build/gnutls-3.8.8/src/gl/gl_anylinked_list2.h: scope_hint: In function 'gl_linked_iterator'
gnutls-3.8.8-build/gnutls-3.8.8/src/gl/gl_anylinked_list2.h:952:10: warning[-Wanalyzer-use-of-uninitialized-value]: use of uninitialized value 'result.count'
Error: CPPCHECK_WARNING (CWE-457): [#def25]
gnutls-3.8.8-build/gnutls-3.8.8/src/gl/gl_anylinked_list2.h:1023: warning[uninitvar]: Uninitialized variables: result.count, result.i, result.j
Error: GCC_ANALYZER_WARNING (CWE-457): [#def26]
gnutls-3.8.8-build/gnutls-3.8.8/src/gl/gl_anylinked_list2.h: scope_hint: In function 'gl_linked_iterator_from_to'
gnutls-3.8.8-build/gnutls-3.8.8/src/gl/gl_anylinked_list2.h:1023:10: warning[-Wanalyzer-use-of-uninitialized-value]: use of uninitialized value 'result.count'
Error: GCC_ANALYZER_WARNING (CWE-401): [#def27]
gnutls-3.8.8-build/gnutls-3.8.8/src/gl/ialloc.h:60:37: warning[-Wanalyzer-malloc-leak]: leak of 'ximalloc(s + 1)'
gnutls-3.8.8-build/gnutls-3.8.8/src/gl/xmalloc.c: scope_hint: In function 'ximalloc'
gnutls-3.8.8-build/gnutls-3.8.8/src/gl/xmalloc.c: scope_hint: In function 'ximalloc'
Error: GCC_ANALYZER_WARNING (CWE-401): [#def28]
gnutls-3.8.8-build/gnutls-3.8.8/src/gl/ialloc.h:60:37: warning[-Wanalyzer-malloc-leak]: leak of 'ximalloc(s)'
gnutls-3.8.8-build/gnutls-3.8.8/src/gl/xmalloc.c: scope_hint: In function 'ximalloc'
gnutls-3.8.8-build/gnutls-3.8.8/src/gl/xmalloc.c: scope_hint: In function 'ximalloc'
Error: GCC_ANALYZER_WARNING (CWE-401): [#def29]
gnutls-3.8.8-build/gnutls-3.8.8/src/gl/ialloc.h:106:10: warning[-Wanalyzer-malloc-leak]: leak of 'xicalloc(s, 1)'
gnutls-3.8.8-build/gnutls-3.8.8/src/gl/xmalloc.c: scope_hint: In function 'xicalloc'
gnutls-3.8.8-build/gnutls-3.8.8/src/gl/xmalloc.c: scope_hint: In function 'xicalloc'
Error: CPPCHECK_WARNING (CWE-562): [#def30]
gnutls-3.8.8-build/gnutls-3.8.8/src/gl/mktime.c:262: error[returnDanglingLifetime]: Returning pointer to local variable 'x' that will be invalid when returning.
Error: GCC_ANALYZER_WARNING (CWE-401): [#def31]
gnutls-3.8.8-build/gnutls-3.8.8/native_build/src/gl/sys/stat.h:54: included_from: Included from here.
gnutls-3.8.8-build/gnutls-3.8.8/src/gl/read-file.c:23: included_from: Included from here.
gnutls-3.8.8-build/gnutls-3.8.8/src/gl/read-file.c: scope_hint: In function '_gnutls_fread_file'
gnutls-3.8.8-build/gnutls-3.8.8/src/gl/read-file.c:62:57: warning[-Wanalyzer-malloc-leak]: leak of '_gnutls_fread_file(rpl_fopen(filename, mode), flags, length)'
gnutls-3.8.8-build/gnutls-3.8.8/src/gl/read-file.c:18: included_from: Included from here.
gnutls-3.8.8-build/gnutls-3.8.8/src/gl/read-file.c:190:1: note: in expansion of macro 'read_file'
gnutls-3.8.8-build/gnutls-3.8.8/src/gl/read-file.c:202:9: note: in expansion of macro 'fread_file'
gnutls-3.8.8-build/gnutls-3.8.8/src/gl/read-file.c:202:9: note: in expansion of macro 'fread_file'
gnutls-3.8.8-build/gnutls-3.8.8/src/gl/read-file.c:52:1: note: in expansion of macro 'fread_file'
Error: GCC_ANALYZER_WARNING (CWE-401): [#def32]
gnutls-3.8.8-build/gnutls-3.8.8/src/gl/read-file.c:82:6: warning[-Wanalyzer-malloc-leak]: leak of '_gnutls_fread_file(rpl_fopen(filename, mode), flags, length)'
gnutls-3.8.8-build/gnutls-3.8.8/src/gl/read-file.c:190:1: note: in expansion of macro 'read_file'
gnutls-3.8.8-build/gnutls-3.8.8/src/gl/read-file.c:202:9: note: in expansion of macro 'fread_file'
gnutls-3.8.8-build/gnutls-3.8.8/src/gl/read-file.c:202:9: note: in expansion of macro 'fread_file'
gnutls-3.8.8-build/gnutls-3.8.8/src/gl/read-file.c:52:1: note: in expansion of macro 'fread_file'
Error: GCC_ANALYZER_WARNING (CWE-401): [#def33]
gnutls-3.8.8-build/gnutls-3.8.8/src/gl/time_rz.c: scope_hint: In function 'tzfree'
gnutls-3.8.8-build/gnutls-3.8.8/src/gl/time_rz.c:63:64: warning[-Wanalyzer-malloc-leak]: leak of 'tzalloc(getenv("TZ"))'
gnutls-3.8.8-build/gnutls-3.8.8/src/gl/time_rz.c:27: included_from: Included from here.
gnutls-3.8.8-build/gnutls-3.8.8/src/gl/time_rz.c:29: included_from: Included from here.
Error: GCC_ANALYZER_WARNING (CWE-401): [#def34]
gnutls-3.8.8-build/gnutls-3.8.8/src/gl/time_rz.c: scope_hint: In function 'revert_tz'
gnutls-3.8.8-build/gnutls-3.8.8/src/gl/time_rz.c:181:12: warning[-Wanalyzer-malloc-leak]: leak of 'set_tz(tz)'
Error: GCC_ANALYZER_WARNING (CWE-401): [#def35]
gnutls-3.8.8-build/gnutls-3.8.8/src/gl/xmalloc.c: scope_hint: In function 'xmalloc'
gnutls-3.8.8-build/gnutls-3.8.8/src/gl/xmalloc.c:45:10: warning[-Wanalyzer-malloc-leak]: leak of 'xmalloc(n)'
gnutls-3.8.8-build/gnutls-3.8.8/src/gl/xmalloc.c:22: included_from: Included from here.
gnutls-3.8.8-build/gnutls-3.8.8/src/gl/xmalloc.c:57:10: note: in expansion of macro 'XNMALLOC'
gnutls-3.8.8-build/gnutls-3.8.8/src/gl/xmalloc.c:57:10: note: in expansion of macro 'XNMALLOC'
gnutls-3.8.8-build/gnutls-3.8.8/src/gl/xmalloc.c: scope_hint: In function 'xmalloc'
Error: GCC_ANALYZER_WARNING (CWE-401): [#def36]
gnutls-3.8.8-build/gnutls-3.8.8/src/gl/xmalloc.c:45:10: warning[-Wanalyzer-malloc-leak]: leak of 'xmalloc(s)'
gnutls-3.8.8-build/gnutls-3.8.8/src/gl/xmalloc.c: scope_hint: In function 'xmalloc'
Error: GCC_ANALYZER_WARNING (CWE-401): [#def37]
gnutls-3.8.8-build/gnutls-3.8.8/src/gl/xmalloc.c: scope_hint: In function 'xcalloc'
gnutls-3.8.8-build/gnutls-3.8.8/src/gl/xmalloc.c:298:10: warning[-Wanalyzer-malloc-leak]: leak of 'xcalloc(s, 1)'
gnutls-3.8.8-build/gnutls-3.8.8/src/gl/xmalloc.c: scope_hint: In function 'xcalloc'
Error: GCC_ANALYZER_WARNING (CWE-401): [#def38]
gnutls-3.8.8-build/gnutls-3.8.8/src/gl/xmalloc.c: scope_hint: In function 'xmemdup'
gnutls-3.8.8-build/gnutls-3.8.8/src/gl/xmalloc.c:314:10: warning[-Wanalyzer-malloc-leak]: leak of 'xmemdup(string, strlen(string) + 1)'
gnutls-3.8.8-build/gnutls-3.8.8/src/gl/xmalloc.c: scope_hint: In function 'xmemdup'
Error: GCC_ANALYZER_WARNING (CWE-457): [#def39]
gnutls-3.8.8-build/gnutls-3.8.8/src/ocsptool.c: scope_hint: In function 'verify_response'
gnutls-3.8.8-build/gnutls-3.8.8/src/ocsptool.c:532:32: warning[-Wanalyzer-use-of-uninitialized-value]: use of uninitialized value 'chain[1]'
gnutls-3.8.8-build/gnutls-3.8.8/src/ocsptool.c:43: included_from: Included from here.
gnutls-3.8.8-build/gnutls-3.8.8/src/ocsptool.c:651:9: note: in expansion of macro 'optionProcess'
gnutls-3.8.8-build/gnutls-3.8.8/src/ocsptool-options.h:102:24: note: in expansion of macro 'HAVE_OPT_RESPONSE_INFO'
gnutls-3.8.8-build/gnutls-3.8.8/src/ocsptool.c:707:18: note: in expansion of macro 'HAVE_OPT'
gnutls-3.8.8-build/gnutls-3.8.8/src/ocsptool-options.h:102:24: note: in expansion of macro 'HAVE_OPT_GENERATE_REQUEST'
gnutls-3.8.8-build/gnutls-3.8.8/src/ocsptool.c:709:18: note: in expansion of macro 'HAVE_OPT'
gnutls-3.8.8-build/gnutls-3.8.8/src/ocsptool-options.h:102:24: note: in expansion of macro 'HAVE_OPT_VERIFY_RESPONSE'
gnutls-3.8.8-build/gnutls-3.8.8/src/ocsptool.c:711:18: note: in expansion of macro 'HAVE_OPT'
gnutls-3.8.8-build/gnutls-3.8.8/src/common.h:26: included_from: Included from here.
gnutls-3.8.8-build/gnutls-3.8.8/src/ocsptool.c:45: included_from: Included from here.
gnutls-3.8.8-build/gnutls-3.8.8/src/ocsptool.c:512:36: note: in expansion of macro 'read_file'
Error: COMPILER_WARNING (CWE-252): [#def40]
gnutls-3.8.8-build/gnutls-3.8.8/src/serv.c: scope_hint: In function 'terminate'
gnutls-3.8.8-build/gnutls-3.8.8/src/serv.c:1140:9: warning[-Wunused-result]: ignoring return value of 'write' declared with attribute 'warn_unused_result'
Error: COMPILER_WARNING (CWE-252): [#def41]
gnutls-3.8.8-build/gnutls-3.8.8/tests/utils.c: scope_hint: In function '_fail'
gnutls-3.8.8-build/gnutls-3.8.8/tests/utils.c:96:9: warning[-Wunused-result]: ignoring return value of 'vasprintf' declared with attribute 'warn_unused_result'
Scan Properties
analyzer-version-clippy | 1.82.0 |
analyzer-version-cppcheck | 2.16.0 |
analyzer-version-gcc | 14.2.1 |
analyzer-version-gcc-analyzer | 15.0.0 |
analyzer-version-shellcheck | 0.10.0 |
analyzer-version-unicontrol | 0.0.2 |
enabled-plugins | clippy, cppcheck, gcc, shellcheck, unicontrol |
exit-code | 0 |
host | ip-172-16-1-97.us-west-2.compute.internal |
mock-config | fedora-rawhide-gcc-latest-x86_64 |
project-name | gnutls-3.8.8-1.fc42 |
store-results-to | /tmp/tmpfg2nl2ly/gnutls-3.8.8-1.fc42.tar.xz |
time-created | 2024-11-13 00:22:20 |
time-finished | 2024-11-13 00:32:58 |
tool | csmock |
tool-args | '/usr/bin/csmock' '-r' 'fedora-rawhide-gcc-latest-x86_64' '-t' 'clippy,cppcheck,gcc,unicontrol,shellcheck' '-o' '/tmp/tmpfg2nl2ly/gnutls-3.8.8-1.fc42.tar.xz' '--gcc-analyze' '--unicontrol-notests' '--unicontrol-bidi-only' '--install=gcc-latest' '--gcc-analyzer-bin=/opt/gcc-latest/bin/gcc' '/tmp/tmpfg2nl2ly/gnutls-3.8.8-1.fc42.src.rpm' |
tool-version | csmock-3.7.1.20241107.094801.gb3f0f26.pr_192-1.el9 |