메뉴 건너뛰기




Volumn , Issue , 2007, Pages

RICH: Automatically Protecting Against Integer-Based Vulnerabilities

Author keywords

[No Author keywords available]

Indexed keywords

C (PROGRAMMING LANGUAGE); INTEGER PROGRAMMING; NETWORK SECURITY; PROGRAM COMPILERS; PROGRAM DEBUGGING;

EID: 79952020076     PISSN: None     EISSN: None     Source Type: Conference Proceeding    
DOI: None     Document Type: Conference Paper
Times cited : (64)

References (48)
  • 3
    • 85180528589 scopus 로고    scopus 로고
    • JPEG COM marker processing vulnerability in netscape browsers
    • July [Online]. Available
    • “JPEG COM marker processing vulnerability in netscape browsers,” Solar Designer, July 2000. [Online]. Available: http://www.openwall.com/advisories/OW-002-netscape-jpeg/
    • (2000) Solar Designer
  • 5
    • 48649087397 scopus 로고    scopus 로고
    • CVE, Dec [Online]. Available
    • “Linux kernel do brk() vulnerablility,” CVE, Dec 2003. [Online]. Available: http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0961
    • (2003) Linux kernel do brk() vulnerablility
  • 7
    • 85180539307 scopus 로고    scopus 로고
    • Samba function reply nttrans vulnerability
    • Jul [Online]. Available
    • “Samba function reply nttrans vulnerability,” SecuriTeam, Jul 2003. [Online]. Available: http://www.securiteam.com/exploits/5TP0M2AAKS.html
    • (2003) SecuriTeam
  • 8
    • 85180542412 scopus 로고    scopus 로고
    • Pine email header parsing vulnerability
    • Sep [Online]. Available
    • “Pine email header parsing vulnerability,” SecuriTeam, Sep 2003. [Online]. Available: http://www.securiteam.com/exploits/5DP0D1PB5Y.html
    • (2003) SecuriTeam
  • 11
    • 85180542233 scopus 로고    scopus 로고
    • Putty 0.53b SFTP client packet parsing integer overflow vulnerability
    • Feb [Online]. Available
    • “Putty 0.53b SFTP client packet parsing integer overflow vulnerability,” SecurityFocus, Feb 2005. [Online]. Available: http://www.securityfocus.com/bid/12601/
    • (2005) SecurityFocus
  • 12
    • 85180539444 scopus 로고    scopus 로고
    • Samba directory access control list remote integer overflow vulnerability
    • SecurityFocus, Dec [Online]. Available
    • “Samba directory access control list remote integer overflow vulnerability,” SecurityFocus, Dec 2004. [Online]. Available: http://www.securityfocus.com/bid/11973
    • (2004)
  • 13
    • 85180530569 scopus 로고    scopus 로고
    • Mailutil-0.6 imap4d remote integer overflow vulnerability
    • SecurityFocus, May [Online]. Available
    • “Mailutil-0.6 imap4d remote integer overflow vulnerability,” SecurityFocus, May 2005. [Online]. Available: http://www.securityfocus.com/bid/13763/
    • (2005)
  • 14
    • 85180535660 scopus 로고    scopus 로고
    • iDEFENSE lab, Dec [Online]. Available
    • “libtiff STRIPOFFSETS integer overflow vulnerability,” iDEFENSE lab, Dec 2004. [Online]. Available: http://www.idefense.com/intelligence/vulnerabilities/display.php?id=173
    • (2004) libtiff STRIPOFFSETS integer overflow vulnerability
  • 15
    • 85180538508 scopus 로고    scopus 로고
    • iDEFENSE lab, Dec [Online]. Available
    • “libtiff directory entry count integer overflow vulnerability,” iDEFENSE lab, Dec 2004. [Online]. Available: http://www.idefense.com/intelligence/vulnerabilities/display.php?id=174
    • (2004) libtiff directory entry count integer overflow vulnerability
  • 20
    • 85180535835 scopus 로고    scopus 로고
    • CVE. [Online]. Available
    • “CVE (version 20040901),” CVE. [Online]. Available: http://www.cve.mitre.org/cgi-bin/cvekey.cgi?keyword=integer
    • CVE (version 20040901)
  • 21
    • 85084160243 scopus 로고    scopus 로고
    • Stackguard: automatic adaptive detection and prevention of buffer-overflow attacks
    • etc., in
    • C. Cowan, C. Pu, D. Maier, and etc., “Stackguard: automatic adaptive detection and prevention of buffer-overflow attacks,” in USENIX Security Symposium, 1998, p. 63C77.
    • (1998) USENIX Security Symposium , pp. 63C77
    • Cowan, C.1    Pu, C.2    Maier, D.3
  • 27
    • 70349885896 scopus 로고    scopus 로고
    • Phrack Inc., Dec [Online]. Available
    • O. Horovitz, “Big loop integer protection,” Phrack Inc., Dec 2002. [Online]. Available: http://www.phrack.org/phrack/60/p60-0x09.txt
    • (2002) Big loop integer protection
    • Horovitz, O.1
  • 28
    • 33144459697 scopus 로고    scopus 로고
    • Jan [Online]. Available
    • D. LeBlanc, “Integer handling with the C++ SafeInt class,” Jan 2004. [Online]. Available: http://msdn.microsoft.com/library/default.asp?url=/library/en-us/dncode/html/secure01142004.asp
    • (2004) Integer handling with the C++ SafeInt class
    • LeBlanc, D.1
  • 30
    • 77956370543 scopus 로고    scopus 로고
    • Feb [Online]. Available
    • M. Howard et al., “Safe integer arithmetic in C,” Feb 2006. [Online]. Available: http://blogs.msdn.com/ michael howard/archive/2006/02/02/523392.aspx
    • (2006) Safe integer arithmetic in C
    • Howard, M.1


* 이 정보는 Elsevier사의 SCOPUS DB에서 KISTI가 분석하여 추출한 것입니다.