loading
Papers Papers/2022 Papers Papers/2022

Research.Publish.Connect.

Paper

Paper Unlock

Authors: Salim Yahia Kissi 1 ; Yassamine Seladji 1 and Rabéa Ameur-Boulifa 2

Affiliations: 1 LRIT, University of Abou Bekr Belkaid, Tlemcen, Algeria ; 2 LTCI, Télécom Paris, Institut Polytechnique de Paris, France

Keyword(s): Security Vulnerability, Memory Errors, Software Analysis, Satisfiability Analysis, Integer Overflow.

Abstract: Sometimes computing platforms, e.g. storage device, compilers, operating systems used to execute software programs make them misbehave, this type of issues could be exploited by attackers to access sensitive data and compromise the system. This paper presents an automatable approach for detecting such security vulnerabilities due to improper execution environment. Specifically, the advocated approach targets the detection of security vulnerabilities in the software caused by memory overflows such as integer overflow. Based on analysis of the source code and by using a knowledge base gathering common execution platform issues and known restrictions, the paper proposes a framework able to infer the required assertions, without manual code annotations and rewriting, for generating logical formulas that can be used to reveal potential code weaknesses.

CC BY-NC-ND 4.0

Sign In Guest: Register as new SciTePress user now for free.

Sign In SciTePress user: please login.

PDF ImageMy Papers

You are not signed in, therefore limits apply to your IP address 18.217.73.187

In the current month:
Recent papers: 100 available of 100 total
2+ years older papers: 200 available of 200 total

Paper citation in several formats:
Kissi, S.; Seladji, Y. and Ameur-Boulifa, R. (2021). Detection of Security Vulnerabilities Induced by Integer Errors. In Proceedings of the 16th International Conference on Software Technologies - ICSOFT; ISBN 978-989-758-523-4; ISSN 2184-2833, SciTePress, pages 177-184. DOI: 10.5220/0010551301770184

@conference{icsoft21,
author={Salim Yahia Kissi. and Yassamine Seladji. and Rabéa Ameur{-}Boulifa.},
title={Detection of Security Vulnerabilities Induced by Integer Errors},
booktitle={Proceedings of the 16th International Conference on Software Technologies - ICSOFT},
year={2021},
pages={177-184},
publisher={SciTePress},
organization={INSTICC},
doi={10.5220/0010551301770184},
isbn={978-989-758-523-4},
issn={2184-2833},
}

TY - CONF

JO - Proceedings of the 16th International Conference on Software Technologies - ICSOFT
TI - Detection of Security Vulnerabilities Induced by Integer Errors
SN - 978-989-758-523-4
IS - 2184-2833
AU - Kissi, S.
AU - Seladji, Y.
AU - Ameur-Boulifa, R.
PY - 2021
SP - 177
EP - 184
DO - 10.5220/0010551301770184
PB - SciTePress