The C Code Analyzer (CCA) is a static analysis tool for detecting potential security problems in C source code. It's fully automatic; no code annotations or the like are required. It features an automatic user input tracer, potential buffer overflow detection, and more. An eclipse front-end plugin is included.
5d74391e149b1f0f985f97eee613874bc72c6cb0570f533ca7438927fc5a3d77