Subj : New Defects reported by Coverity Scan for Synchronet To : cov-scan@synchro.net From : scan-admin@coverity.com Date : Thu Dec 21 2023 15:17:37 Hi, Please find the latest report on new defect(s) introduced to Synchronet found with Coverity Scan. 1 new defect(s) introduced to Synchronet found with Coverity Scan. 1 defect(s), reported by Coverity Scan earlier, were marked fixed in the recent build analyzed by Coverity Scan. New defect(s) Reported-by: Coverity Scan Showing 1 of 1 defect(s) ** CID 471381: Null pointer dereferences (NULL_RETURNS) /ssl.c: 412 in get_ssl_cert() ________________________________________________________________________________________________________ *** CID 471381: Null pointer dereferences (NULL_RETURNS) /ssl.c: 412 in get_ssl_cert() 406 407 if(!do_cryptInit()) 408 return -1; 409 ssl_sync(cfg); 410 lock_ssl_cert_write(); 411 cert_entry = malloc(sizeof(*cert_entry)); >>> CID 471381: Null pointer dereferences (NULL_RETURNS) >>> Dereferencing "cert_entry", which is known to be "NULL". 412 cert_entry->sess = -1; 413 cert_entry->epoch = cert_epoch; 414 cert_entry->next = NULL; 415 416 /* Get the certificate... first try loading it from a file... */ 417 if(cryptStatusOK(cryptKeysetOpen(&ssl_keyset, CRYPT_UNUSED, CRYPT_KEYSET_FILE, cert_path, CRYPT_KEYOPT_READONLY))) { ________________________________________________________________________________________________________ To view the defects in Coverity Scan visit, https://u15810271.ct.sendgrid.net/ls/click?upn=HRESupC-2F2Czv4BOaCWWCy7my0P0qcxCbhZ31OYv50yp-2FP9gGRhvFklLaQKuBylUrkMFB3WMR2p7qIYKYTZrh4E6fW2ok94RcmG1J20ETIf4-3DNVYG_g4j7BHlu96plUOfCQsO0yRjoWZCZl8YGnZ-2FUtT39hrAIQBrbLtBWXBu7NOIgqUVW-2FO9u7UhLy-2BFNLgqIU41zpqPfBM73Awa3dQxk3-2F184GO6VUS7KkG6sPhNBuQiQ4Keqf56uFZ5RoDxe4X35uihMatLZZvu1DTj5op2mLHIzl6CugzzedJw-2FjcHjqyoRYDdN5cjuB-2Bi1UXQGnATKvNQkg-3D-3D --- SBBSecho 3.20-Linux * Origin: Vertrauen - [vert/cvs/bbs].synchro.net (1:103/705) .