Newly introduced findings

List of Findings

Error: GCC_ANALYZER_WARNING (CWE-476): [#def1]
plymouth-24.004.60/src/libply-splash-core/ply-pixel-buffer.c:1033:33: warning[-Wanalyzer-possible-null-dereference]: dereference of possibly-NULL ‘ply_pixel_buffer_get_argb32_data(ply_pixel_buffer_new((long unsigned int)width, (long unsigned int)height))’
plymouth-24.004.60/src/libply-splash-core/ply-pixel-buffer.c:999:1: enter_function: entry to ‘ply_pixel_buffer_rotate’
plymouth-24.004.60/src/libply-splash-core/ply-pixel-buffer.c:1014:18: call_function: calling ‘ply_pixel_buffer_new’ from ‘ply_pixel_buffer_rotate’
plymouth-24.004.60/src/libply-splash-core/ply-pixel-buffer.c:1014:18: return_function: returning to ‘ply_pixel_buffer_rotate’ from ‘ply_pixel_buffer_new’
plymouth-24.004.60/src/libply-splash-core/ply-pixel-buffer.c:1026:21: branch_true: following ‘true’ branch (when ‘y < height’)...
plymouth-24.004.60/src/libply-splash-core/ply-pixel-buffer.c:1029:17: branch_true: ...to here
plymouth-24.004.60/src/libply-splash-core/ply-pixel-buffer.c:1031:29: branch_true: following ‘true’ branch (when ‘x < width’)...
plymouth-24.004.60/src/libply-splash-core/ply-pixel-buffer.c:1032:28: branch_true: ...to here
plymouth-24.004.60/src/libply-splash-core/ply-pixel-buffer.c:1033:33: danger: ‘ply_pixel_buffer_get_argb32_data(ply_pixel_buffer_new((long unsigned int)width, (long unsigned int)height)) + (long unsigned int)(y * width + x) * 4’ could be NULL: unchecked value from [(8)](sarif:/runs/0/results/10/codeFlows/0/threadFlows/0/locations/7)
# 1031|                   for (x = 0; x < width; x++) {
# 1032|                           if (old_x < 0 || old_x > width || old_y < 0 || old_y > height)
# 1033|->                                 bytes[x + y * width] = 0;
# 1034|                           else
# 1035|                                   bytes[x + y * width] =

Scan Properties

analyzer-version-clippy1.90.0
analyzer-version-cppcheck2.18.3
analyzer-version-gcc15.2.1
analyzer-version-gcc-analyzer16.0.0
analyzer-version-shellcheck0.11.0
analyzer-version-unicontrol0.0.2
diffbase-analyzer-version-clippy1.90.0
diffbase-analyzer-version-cppcheck2.18.3
diffbase-analyzer-version-gcc15.2.1
diffbase-analyzer-version-gcc-analyzer16.0.0
diffbase-analyzer-version-shellcheck0.11.0
diffbase-analyzer-version-unicontrol0.0.2
diffbase-enabled-pluginsclippy, cppcheck, gcc, shellcheck, unicontrol
diffbase-exit-code0
diffbase-hostip-172-16-1-92.us-west-2.compute.internal
diffbase-known-false-positives/usr/share/csmock/known-false-positives.js
diffbase-known-false-positives-rpmknown-false-positives-0.0.0.20250521.132812.g8eff701.main-1.el9.noarch
diffbase-mock-configfedora-rawhide-gcc-latest-x86_64
diffbase-project-nameplymouth-24.004.60-20.fc43
diffbase-store-results-to/tmp/tmpx6ao3xkx/plymouth-24.004.60-20.fc43.tar.xz
diffbase-time-created2025-10-28 19:40:46
diffbase-time-finished2025-10-28 19:43:07
diffbase-toolcsmock
diffbase-tool-args'/usr/bin/csmock' '-r' 'fedora-rawhide-gcc-latest-x86_64' '-t' 'gcc,cppcheck,shellcheck,clippy,unicontrol' '-o' '/tmp/tmpx6ao3xkx/plymouth-24.004.60-20.fc43.tar.xz' '--gcc-analyze' '--unicontrol-notests' '--unicontrol-bidi-only' '--install' 'pam' '--install=gcc-latest' '--gcc-analyzer-bin=/opt/gcc-latest/bin/gcc' '/tmp/tmpx6ao3xkx/plymouth-24.004.60-20.fc43.src.rpm'
diffbase-tool-versioncsmock-3.8.3.20251027.143044.ge6b947b-1.el9
enabled-pluginsclippy, cppcheck, gcc, shellcheck, unicontrol
exit-code0
hostip-172-16-1-92.us-west-2.compute.internal
known-false-positives/usr/share/csmock/known-false-positives.js
known-false-positives-rpmknown-false-positives-0.0.0.20250521.132812.g8eff701.main-1.el9.noarch
mock-configfedora-rawhide-gcc-latest-x86_64
project-nameplymouth-24.004.60-21.fc44
store-results-to/tmp/tmplfuxld6k/plymouth-24.004.60-21.fc44.tar.xz
time-created2025-10-28 19:43:31
time-finished2025-10-28 19:45:21
titleNewly introduced findings
toolcsmock
tool-args'/usr/bin/csmock' '-r' 'fedora-rawhide-gcc-latest-x86_64' '-t' 'gcc,cppcheck,shellcheck,clippy,unicontrol' '-o' '/tmp/tmplfuxld6k/plymouth-24.004.60-21.fc44.tar.xz' '--gcc-analyze' '--unicontrol-notests' '--unicontrol-bidi-only' '--install' 'pam' '--install=gcc-latest' '--gcc-analyzer-bin=/opt/gcc-latest/bin/gcc' '/tmp/tmplfuxld6k/plymouth-24.004.60-21.fc44.src.rpm'
tool-versioncsmock-3.8.3.20251027.143044.ge6b947b-1.el9