PT-2026-91202 · Dvidelabs · Flatcc

·

CVE-2026-90785

·

Published

2026-09-14

·

Updated

2026-09-15

CVSS v4.0

5.5

Medium

VectorAV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N/E:P
Name of the Vulnerable Software and Affected Versions Dvidelabs flatcc versions prior to 0.6.4
Description A remote attack is possible due to an issue in the Struct Analysis component. Specifically, the analyze struct() function within the src/compiler/semantics.c file can be manipulated to trigger a reachable assertion, which is a condition where the program encounters an unexpected state and terminates.
Recommendations Apply patch f705032346ee39efd7d3848c50b73d455d28d06d to remediate the issue.

Exploit

Fix

Assertion Failure

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-90785

Affected Products

Flatcc