首页>
外国专利>
Static tainting analysis system and method for taint analysis of computer program code-lysis
Static tainting analysis system and method for taint analysis of computer program code-lysis
展开▼
机译:静态污点分析系统及计算机程序代码解析的污点分析方法
展开▼
页面导航
摘要
著录项
相似文献
摘要
A method is provided to infer taintedness in code expressions encoded in a computer readable device comprising: configuring a computer system to, store a representation of a computer program that is to be evaluated in non-transitory storage media; identify within the representation a pointer cast operation; determine whether an identified cast operation involves a cast from a pointer to a raw memory data type to a pointer to a structured data type; determine whether a structured data type casted to is associated with indicia of externalness; designating data addressed by that pointer as tainted; and determine whether data designated as tainted is consumed by an operation in the computer program that acts as a taintedness sink.
展开▼