首页> 外文会议>International Conference on Computer Science and Information Technologies >Reachability confirmation of statically detected defects using dynamic analysis
【24h】

Reachability confirmation of statically detected defects using dynamic analysis

机译:通过动态分析可达确认静态检测到的缺陷

获取原文
获取外文期刊封面目录资料

摘要

Static and dynamic analysis of programs are well known approaches to the problem of automatic program behaviour analysis. Both methods have advantages and limitations. Static analysis has lack of precision for the sake of scalability. On the other hand, dynamic analysis has 100% precision while reaching defect point, but suffers from scalability issues. This paper describes an approach to confirmation of reachability of source-sink defects that were found by static analysis with help of dynamic analysis. The combination of methods allows to circumvent limitations and multiply their advantages. Preliminary experiments on several open source projects show that real true positive defects can be confirmed to be reachable using the approach and some false positives can be proved.
机译:静态和动态分析程序是众所周知的自动程序行为分析问题的方法。两种方法都具有优缺点。为了可扩展性,静态分析缺乏精度。另一方面,动态分析具有100 %精度,同时达到缺陷点,但遭受可扩展性问题。本文介绍了通过动态分析的帮助确认通过静态分析找到的源区缺陷的可达性的方法。方法的组合允许规避局限性并乘以它们的优点。在几个开源项目上的初步实验表明,可以确认使用方法确认真正的真正缺陷,可以证明一些误报。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号