全部 标题 作者
关键词 摘要

OALib Journal期刊
ISSN: 2333-9721
费用:99美元

查看量下载量

相关文章

更多...

基于整型变量一致化的整数溢出检测

DOI: 10.13190/jbupt.200806.90.193, PP. 90-93

Keywords: 整数溢出,静态代码分析,控制流分析,信息安全

Full-Text   Cite this paper   Add to My Lib

Abstract:

在研究整数溢出产生原因的基础上,提出基于整型变量一致化处理且面向软件源代码整数溢出的检测方法.该方法将整数溢出检测问题抽象为1个多元不等式组求解的问题,用以解决上下文环境对整数溢出检测的影响.实例分析表明,该方法可有效解决源代码中整数溢出漏洞的检测问题.

References

[1]  McGraw G. Software security: building security in[M]. Boston: Addison Wesley Professional, 2006: 3-9.
[2]  Wagner D, Foster J S, Brewer E A, et al. A first step towards automated detection of buffer overrun vulnerabilities//Network and Distributed System Security Symposium 2000. San Diego: , 2000: 3-17.
[3]  Viega J, Bloch J T, Kohno Y, et al. A static vulnerability scanner for C and C++ code//ACSAC '00. 16th Annual Conference. New Orleans: Computer Security Applications, 2000: 257-267.
[4]  Huang Guangyan, Zhang Guangmei, Li Xiaowei, et al. A state machine for detecting C C++ memory faults//ATS'05. Washington: IEEE Computer Society, 2005: 82-87.
[5]  Sabelfeld A, Myers A C. Language-based information-flow security. IEEE Journal on Selected Areas in Communications, 2003, 21(1): 5-19.
[6]  Torben A, Anindya B. Information flow analysis in logical form//CIS TR 2004. Kansas: Kansas State University, 2004: 100-115.

Full-Text

Contact Us

service@oalib.com

QQ:3279437679

WhatsApp +8615387084133