[*] Binary protection state of libm-0.9.30.1.so
RELRO CANARY NX PIE RPATH RUNPATH SYMBOLS
No RELRO No Canary found NX disabled DSO No RPATH No RUNPATH No Symbols
[+] Identified source function: /logs/s16_ghidra_decompile_checks/haruspex_libm-0.9.30.1.so/nanf_0001aa80.c
Semgrep rule: external.semgrep-rules-0xdea.rules.c.raptor-insecure-api-sprintf-vsprintf
Issue description:
A buffer overflow condition exists when a program attempts to put more data in a buffer than it can hold, or when a program attempts to put data in a memory area outside of the boundaries of a buffer.
13 - sprintf(&stack0xffffffe0 + -(sVar1 + 0x14 & 0xfffffff8),"NAN(%s)",__tagb)
[+] Identified source function: /logs/s16_ghidra_decompile_checks/haruspex_libm-0.9.30.1.so/nanf_0001aa80.c
Semgrep rule: external.semgrep-rules-0xdea.rules.c.raptor-interesting-api-calls
Issue description:
Locate all calls to interesting and potentially insecure API functions (candidate points). The auditor can backtrace from these candidate points to find pathways allowing access from untrusted input.
13 - sprintf(&stack0xffffffe0 + -(sVar1 + 0x14 & 0xfffffff8),"NAN(%s)",__tagb); //possible issue identified - semgrep
[+] Identified source function: /logs/s16_ghidra_decompile_checks/haruspex_libm-0.9.30.1.so/nan_0001ab3c.c
Semgrep rule: external.semgrep-rules-0xdea.rules.c.raptor-insecure-api-sprintf-vsprintf
Issue description:
A buffer overflow condition exists when a program attempts to put more data in a buffer than it can hold, or when a program attempts to put data in a memory area outside of the boundaries of a buffer.
13 - sprintf(&stack0xffffffe0 + -(sVar1 + 0x14 & 0xfffffff8),"NAN(%s)",__tagb)
[+] Identified source function: /logs/s16_ghidra_decompile_checks/haruspex_libm-0.9.30.1.so/nan_0001ab3c.c
Semgrep rule: external.semgrep-rules-0xdea.rules.c.raptor-interesting-api-calls
Issue description:
Locate all calls to interesting and potentially insecure API functions (candidate points). The auditor can backtrace from these candidate points to find pathways allowing access from untrusted input.
13 - sprintf(&stack0xffffffe0 + -(sVar1 + 0x14 & 0xfffffff8),"NAN(%s)",__tagb); //possible issue identified - semgrep
[+] Identified source function: /logs/s16_ghidra_decompile_checks/haruspex_libm-0.9.30.1.so/nan_0001ab3c.c
Semgrep rule: external.semgrep-rules-0xdea.rules.c.raptor-insecure-api-sprintf-vsprintf
Issue description:
A buffer overflow condition exists when a program attempts to put more data in a buffer than it can hold, or when a program attempts to put data in a memory area outside of the boundaries of a buffer.
13 - sprintf(&stack0xffffffe0 + -(sVar1 + 0x14 & 0xfffffff8),"NAN(%s)",__tagb)
[+] Identified source function: /logs/s16_ghidra_decompile_checks/haruspex_libm-0.9.30.1.so/nan_0001ab3c.c
Semgrep rule: external.semgrep-rules-0xdea.rules.c.raptor-interesting-api-calls
Issue description:
Locate all calls to interesting and potentially insecure API functions (candidate points). The auditor can backtrace from these candidate points to find pathways allowing access from untrusted input.
13 - sprintf(&stack0xffffffe0 + -(sVar1 + 0x14 & 0xfffffff8),"NAN(%s)",__tagb); //possible issue identified - semgrep
[+] Identified source function: /logs/s16_ghidra_decompile_checks/haruspex_libm-0.9.30.1.so/nanf_0001aa80.c
Semgrep rule: external.semgrep-rules-0xdea.rules.c.raptor-insecure-api-sprintf-vsprintf
Issue description:
A buffer overflow condition exists when a program attempts to put more data in a buffer than it can hold, or when a program attempts to put data in a memory area outside of the boundaries of a buffer.
13 - sprintf(&stack0xffffffe0 + -(sVar1 + 0x14 & 0xfffffff8),"NAN(%s)",__tagb)
[+] Identified source function: /logs/s16_ghidra_decompile_checks/haruspex_libm-0.9.30.1.so/nanf_0001aa80.c
Semgrep rule: external.semgrep-rules-0xdea.rules.c.raptor-interesting-api-calls
Issue description:
Locate all calls to interesting and potentially insecure API functions (candidate points). The auditor can backtrace from these candidate points to find pathways allowing access from untrusted input.
13 - sprintf(&stack0xffffffe0 + -(sVar1 + 0x14 & 0xfffffff8),"NAN(%s)",__tagb); //possible issue identified - semgrep