This work is about the plugin csigsafe for the GCC compiler. It uses static code analysis to detect bugs in signal handlers according the POSIX norm. This tool analyzes the source files written in C and C ++. This analyzer is created for the Red Hat, which uses it to test sRPM packages used in their Linux distributions. The tool has been tested on a sample of 37 Open Source projects. Testing has shown the utility of the tool to search for errors associated with violation of rules for proper signal handling
The SEI CERT C/C++ Coding Standard is a set of rules and recommendations for secure coding. It would...
Almost all software contains defects. Some defects are found easily while others are never found, ty...
This thesis has investigated what different tools for static code analysis, with anemphasis on secur...
Táto práca sa zaoberá zásuvným modulom csigsafe pre prekladač GCC. Používa statickú analýzu programo...
This thesis aims at development of a tool support for comparing the output of static analysis applie...
This paper contains an evaluation of common open source static analysistools available for C. The to...
A large number of tools that automate the process of finding errors in pro-grams has recently emerge...
Static analysis tools (see the sidebar onpage 7) are very useful for finding bugs. They go far beyon...
This paper describes the design and implementation of a lightweight static security analyzer that ex...
Nowadays, many different tools to perform static analysis on software (ASATs) are available. These c...
Go is a new language especially known for its speed, simplicity, and concurrency approach. The langu...
Much software for embedded systems is written in languages such as C. This is known to be error pron...
This thesis discusses an application of the fuzz testing method for testing compilers and interprete...
Many practical static analyzers are not completely sound by design. Their designers trade soundness ...
Aim of this thesis is to produce a tool which performs static analysis on C language source code. Re...
The SEI CERT C/C++ Coding Standard is a set of rules and recommendations for secure coding. It would...
Almost all software contains defects. Some defects are found easily while others are never found, ty...
This thesis has investigated what different tools for static code analysis, with anemphasis on secur...
Táto práca sa zaoberá zásuvným modulom csigsafe pre prekladač GCC. Používa statickú analýzu programo...
This thesis aims at development of a tool support for comparing the output of static analysis applie...
This paper contains an evaluation of common open source static analysistools available for C. The to...
A large number of tools that automate the process of finding errors in pro-grams has recently emerge...
Static analysis tools (see the sidebar onpage 7) are very useful for finding bugs. They go far beyon...
This paper describes the design and implementation of a lightweight static security analyzer that ex...
Nowadays, many different tools to perform static analysis on software (ASATs) are available. These c...
Go is a new language especially known for its speed, simplicity, and concurrency approach. The langu...
Much software for embedded systems is written in languages such as C. This is known to be error pron...
This thesis discusses an application of the fuzz testing method for testing compilers and interprete...
Many practical static analyzers are not completely sound by design. Their designers trade soundness ...
Aim of this thesis is to produce a tool which performs static analysis on C language source code. Re...
The SEI CERT C/C++ Coding Standard is a set of rules and recommendations for secure coding. It would...
Almost all software contains defects. Some defects are found easily while others are never found, ty...
This thesis has investigated what different tools for static code analysis, with anemphasis on secur...