Flawfinder version 2.0.10, (C) 2001-2019 David A. Wheeler.
Number of rules (primarily dangerous function names) in C/C++ ruleset: 223
Examining data/openwince-include-0.3.2/arm/pxa2x0/ac97.h
Examining data/openwince-include-0.3.2/arm/pxa2x0/cm.h
Examining data/openwince-include-0.3.2/arm/pxa2x0/dma.h
Examining data/openwince-include-0.3.2/arm/pxa2x0/gpio.h
Examining data/openwince-include-0.3.2/arm/pxa2x0/i2c.h
Examining data/openwince-include-0.3.2/arm/pxa2x0/i2s.h
Examining data/openwince-include-0.3.2/arm/pxa2x0/ic.h
Examining data/openwince-include-0.3.2/arm/pxa2x0/icp.h
Examining data/openwince-include-0.3.2/arm/pxa2x0/lcd.h
Examining data/openwince-include-0.3.2/arm/pxa2x0/mc.h
Examining data/openwince-include-0.3.2/arm/pxa2x0/mmc.h
Examining data/openwince-include-0.3.2/arm/pxa2x0/ost.h
Examining data/openwince-include-0.3.2/arm/pxa2x0/pmrc.h
Examining data/openwince-include-0.3.2/arm/pxa2x0/pwm.h
Examining data/openwince-include-0.3.2/arm/pxa2x0/rtc.h
Examining data/openwince-include-0.3.2/arm/pxa2x0/ssp.h
Examining data/openwince-include-0.3.2/arm/pxa2x0/uart.h
Examining data/openwince-include-0.3.2/arm/pxa2x0/udc.h
Examining data/openwince-include-0.3.2/arm/sa11x0/gpclk.h
Examining data/openwince-include-0.3.2/arm/sa11x0/gpio.h
Examining data/openwince-include-0.3.2/arm/sa11x0/hssp.h
Examining data/openwince-include-0.3.2/arm/sa11x0/ic.h
Examining data/openwince-include-0.3.2/arm/sa11x0/lcd.h
Examining data/openwince-include-0.3.2/arm/sa11x0/mc.h
Examining data/openwince-include-0.3.2/arm/sa11x0/mcp.h
Examining data/openwince-include-0.3.2/arm/sa11x0/ost.h
Examining data/openwince-include-0.3.2/arm/sa11x0/pm.h
Examining data/openwince-include-0.3.2/arm/sa11x0/ppc.h
Examining data/openwince-include-0.3.2/arm/sa11x0/rc.h
Examining data/openwince-include-0.3.2/arm/sa11x0/rtc.h
Examining data/openwince-include-0.3.2/arm/sa11x0/ssp.h
Examining data/openwince-include-0.3.2/arm/sa11x0/uart.h
Examining data/openwince-include-0.3.2/arm/sa11x0/udc.h
Examining data/openwince-include-0.3.2/arm/arm.h
Examining data/openwince-include-0.3.2/brux/bus.h
Examining data/openwince-include-0.3.2/brux/cfi.h
Examining data/openwince-include-0.3.2/brux/cmd.h
Examining data/openwince-include-0.3.2/brux/flash.h
Examining data/openwince-include-0.3.2/device/codec/ac97.h
Examining data/openwince-include-0.3.2/device/codec/ucb1400.h
Examining data/openwince-include-0.3.2/device/flash/28fxxxj.h
Examining data/openwince-include-0.3.2/device/flash/28fxxxk.h
Examining data/openwince-include-0.3.2/device/flash/cfi.h
Examining data/openwince-include-0.3.2/device/flash/intel.h
Examining data/openwince-include-0.3.2/std/mic.h
Examining data/openwince-include-0.3.2/win32/stdint.h
Examining data/openwince-include-0.3.2/common.h
Examining data/openwince-include-0.3.2/cexcept.h

FINAL RESULTS:

data/openwince-include-0.3.2/brux/bus.h:60:13:  [1] (buffer) read:
  Check buffer boundaries if used in a loop including recursive loops
  (CWE-120, CWE-20).
	uint32_t (*read)( bus_t *bus, uint32_t adr );
data/openwince-include-0.3.2/brux/bus.h:77:40:  [1] (buffer) read:
  Check buffer boundaries if used in a loop including recursive loops
  (CWE-120, CWE-20).
#define	bus_read(bus,adr)	bus->driver->read(bus,adr)

ANALYSIS SUMMARY:

Hits = 2
Lines analyzed = 7564 in approximately 0.25 seconds (30603 lines/second)
Physical Source Lines of Code (SLOC) = 4295
Hits@level = [0]   0 [1]   2 [2]   0 [3]   0 [4]   0 [5]   0
Hits@level+ = [0+]   2 [1+]   2 [2+]   0 [3+]   0 [4+]   0 [5+]   0
Hits/KSLOC@level+ = [0+] 0.465658 [1+] 0.465658 [2+]   0 [3+]   0 [4+]   0 [5+]   0
Dot directories skipped = 1 (--followdotdir overrides)
Minimum risk level = 1
Not every hit is necessarily a security vulnerability.
There may be other security vulnerabilities; review your code!
See 'Secure Programming HOWTO'
(https://dwheeler.com/secure-programs) for more information.