Klovo's Trophy Case

An incomplete list of recent bugs found by Klovo:

ApplicationSuiteBug typeBug report
doc/chewGNU Binutils 2.45heap buffer overflowhttps://sourceware.org/bugzilla/show_bug.cgi?id=33513
doc/chewGNU Binutils 2.45null dereferencehttps://sourceware.org/bugzilla/show_bug.cgi?id=33514
awkBusybox 1.36.1null dereferencehttps://bugs.busybox.net/show_bug.cgi?id=15655
bcBusybox 1.36.1heap buffer overflowhttps://bugs.busybox.net/show_bug.cgi?id=15646
odBusybox 1.36.1global buffer overflowhttps://bugs.busybox.net/show_bug.cgi?id=15649
tsortBusybox 1.36.1heap use after freehttps://bugs.busybox.net/show_bug.cgi?id=15652
b2sumGNU Coreutils 9.3heap buffer overflowhttps://debbugs.gnu.org/cgi/bugreport.cgi?bug=64229
unexpandGNU Coreutils 9.8heap buffer overflowhttps://debbugs.gnu.org/cgi/bugreport.cgi?bug=79555
gcalGNU gcal 4.2heap buffer overflowhttps://savannah.gnu.org/bugs/index.php?67572
gcalGNU gcal 4.2null dereferencehttps://savannah.gnu.org/bugs/index.php?67573
dateToybox 0.8.9null dereferencehttps://github.com/landley/toybox/issues/437
getoptToybox 0.8.12heap buffer overflowhttps://github.com/landley/toybox/issues/571
mkpasswdToybox 0.8.12global buffer overflowhttps://github.com/landley/toybox/issues/573
patchToybox 0.8.12heap buffer overflowhttps://github.com/landley/toybox/issues/572
printfToybox 0.8.12out of bounds readhttps://github.com/landley/toybox/issues/574