缓冲区溢出漏洞检测技术是信息安全研究的一个重要分支。针对缓冲区溢出漏洞提出了一种基于语法单位分析的自动检测方法并加以实现。与已有的方法相比,该方法具有较低的误报率和很好的运行性能。
Buffer overflow detection technology is an important branch of the information security researches. An approach based on syntax node analysis to detect buffer overflow automatically is presented, and one prototype is implemented. This approach has the lower false alarms and the better performance compared with the existing approaches.