Vulnerabilities > CVE-2023-39070 - Use After Free vulnerability in Cppchecksolutions Cppcheck 2.12.0

047910
CVSS 7.8 - HIGH
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
LOW
Confidentiality impact
HIGH
Integrity impact
HIGH
Availability impact
HIGH
local
low complexity
cppchecksolutions
CWE-416

Summary

An issue in Cppcheck 2.12 dev allows a local attacker to execute arbitrary code via the removeContradiction parameter in token.cpp:1934.

Vulnerable Configurations

Part Description Count
Application
Cppchecksolutions
1

Common Weakness Enumeration (CWE)