首页> 外文期刊>Programming and Computer Software >Static Analysis Method for Detecting Buffer Overflow Vulnerabilities
【24h】

Static Analysis Method for Detecting Buffer Overflow Vulnerabilities

机译:检测缓冲区溢出漏洞的静态分析方法

获取原文
获取原文并翻译 | 示例

摘要

In this paper, a new static method for automated detection of vulnerabilities that could result in buffer overflows in programs is suggested. The problem of the software defense against threads related to buffer overflows is very important one. Currently, there does not exist satisfactory approaches to its solution. The existing dynamic methods make it possible to avoid incorrect execution for certain classes of programs. The basic disadvantage of these methods is that the procedure of the error detection after the session of tests is very involved. Moreover, they do not guarantee that the results obtained are correct. Static analysis methods are, as a rule, lexical scanners and do not thoroughly analyze the execution of the program, as well as its memory content (e.g., arrays, variables, and the like). The objective of the suggested method is to improve situation in this field and facilitate the audit of a program code by the programmer.
机译:本文提出了一种新的静态方法,用于自动检测漏洞,这些漏洞可能导致程序中的缓冲区溢出。软件抵御与缓冲区溢出相关的线程的问题非常重要。当前,没有令人满意的解决方案。现有的动态方法可以避免某些程序类别的错误执行。这些方法的基本缺点是测试过程后的错误检测过程非常复杂。而且,他们不保证所获得的结果是正确的。静态分析方法通常是词法扫描器,不能完全分析程序的执行及其内存内容(例如数组,变量等)。所提出的方法的目的是改善该领域的状况并促进程序员对程序代码的审核。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号