samurai 1.2 has a NULL pointer dereference in writefile() in util.c via a crafted build file.
CVSS Metrics