CVE-2025-40843

Severity CVSS v4.0:
Pending analysis
Type:
CWE-121 Stack-based Buffer Overflow
Publication date:
28/10/2025
Last modified:
14/11/2025

Description

CodeChecker is an analyzer tooling, defect database and viewer extension for the Clang Static Analyzer and Clang Tidy. <br /> <br /> <br /> <br /> <br /> CodeChecker versions up to 6.26.1 contain a buffer overflow vulnerability in the internal ldlogger library, which is executed by the CodeChecker log command.<br /> <br /> <br /> <br /> <br /> <br /> This issue affects CodeChecker: through 6.26.1.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:ericsson:codechecker:*:*:*:*:*:*:*:* 6.26.2 (excluding)