CVE-2024-0911: GNU Indent

Medium severity, CVSS 5.5. EPSS: 0.3% chance of exploitation in the next 30 days.

A flaw was found in indent, a program for formatting C code. This issue may allow an attacker to trick a user into processing a specially crafted file to trigger a heap-based buffer overflow, causing the application to crash.

Affected products

  • GNU Indent: version 2.2.13 only

Published 2024-02-06. Last modified 2026-06-17.