PT-2026-91202 · Dvidelabs · Flatcc
CVSS v4.0
5.5
Medium
| Vector | AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N/E:P |
Name of the Vulnerable Software and Affected Versions
Dvidelabs flatcc versions prior to 0.6.4
Description
A remote attack is possible due to an issue in the Struct Analysis component. Specifically, the
analyze struct() function within the src/compiler/semantics.c file can be manipulated to trigger a reachable assertion, which is a condition where the program encounters an unexpected state and terminates.Recommendations
Apply patch f705032346ee39efd7d3848c50b73d455d28d06d to remediate the issue.
Exploit
Fix
Assertion Failure
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Flatcc