next up previous
Next: 4.1 Leaf Polymorphism Up: Detecting Format String Vulnerabilities Previous: Hotspots.

4 Finding Format String Bugs

In Section 2 we described the basic workings of the cqual tool. In this section we discuss extensions to make the basic tool sound in the presence of type casts and variable argument functions, and to decrease false positives by using the programmer's knowledge about the program being analyzed.


Umesh Shankar 2001-05-16