首页> 外文会议>International Conference on Information Science and Control Engineering >A Static Taint Detection Method for Stack Overflow Vulnerabilities in Binaries
【24h】

A Static Taint Detection Method for Stack Overflow Vulnerabilities in Binaries

机译:二进制文件中堆栈溢出漏洞的静态污点检测方法

获取原文
获取外文期刊封面目录资料

摘要

The current static analysis approaches for detecting stack overflow vulnerabilities in binaries are only usable to the functions in system libraries and not suitable for user defined functions. In this paper, we model the characteristic of stack overflow vulnerabilities and propose a static taint analysis method, which can recognize user defined functions that may have that type of vulnerabilities. The experiments on 4 runtime libraries and 2 executables show that this method can find the stack overflow vulnerabilities in binaries correctly and effectively.
机译:当前用于检测二进制文件中堆栈溢出漏洞的静态分析方法仅适用于系统库中的功能,不适用于用户定义的功能。在本文中,我们对堆栈溢出漏洞的特征进行建模,并提出了一种静态污点分析方法,该方法可以识别用户定义的可能具有此类漏洞的功能。在4个运行时库和2个可执行文件上进行的实验表明,该方法可以正确有效地找到二进制文件中的堆栈溢出漏洞。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号