jedisct1 / libhydrogen

A lightweight, secure, easy-to-use crypto library suitable for constrained environments.
https://libhydrogen.org
Other
608 stars 92 forks source link

Code analysis #31

Closed nxrighthere closed 5 years ago

nxrighthere commented 5 years ago

I just performed code analysis using PVS-Studio, and the application detected up to 19 warnings with various levels.

Here's a beautiful and convenient HTML report for you: libhydrogen_analysis.zip

nxrighthere commented 5 years ago

I believe that there are many false positive warnings, but still, maybe you will find something that deserves some attention.

jedisct1 commented 5 years ago

Hi, and thanks!

The good news is that these are all false positive, including the "high severity" one (we want to load x3 and z3 here).

Thanks!