期刊文献+

开源软件漏洞补丁的采集与整理

Open source software vulnerability patch collection and management
下载PDF
导出
摘要 针对美国国家漏洞数据库(National Vulnerability Database,NVD)中开源软件的漏洞,设计并实现了漏洞补丁采集与分析系统。该系统能自动采集漏洞补丁文件,生成漏洞补丁库。基于漏洞补丁数据,提取补丁特征并进行分类整理,为不同类型漏洞提供有效的漏洞检测方法等研究提供了数据和分析基础。 This paper presents a software vulnerability patch collection and analysis system for vulnerabilities of open source software in the National Vulnerability Database (NVD). The system collects vulnerability patches automatically and generates the vulnerability patch database. It extracts the patch features from the vulnerability patches and then classifies and orders them. The system can provide the data and analysis basis for the study of effective vulnerability detection approaches for different types of vulnerabilities.
作者 邹雅毅 李珍 ZOU Ya-yi LI Zhen(Class 1 Senior 2, High School Attached to Huazhong University of Science and Technology ,Wuhan Hubei 430074, China School of Computer Science and Technology , Huazhong University of Science and Technology , Wuhan Hubei 430074,China)
出处 《河北省科学院学报》 CAS 2016年第3期18-22,共5页 Journal of The Hebei Academy of Sciences
关键词 软件漏洞 补丁 漏洞库 Software vulnerability Patch Vulnerability database
  • 相关文献

参考文献6

  • 1美国国家漏洞数据库[EB/OL].https://nvd.nist.gov/.
  • 2开源漏洞库[EB/OL].http://www.osvdb.org/.
  • 3..国家信息安全漏洞共享平台[EB/OL]..htrp://www.cnvd.org.cn/.,,..
  • 4..中国国家信息安全漏洞库[EB/OL]..http://www.cnnvd.org.cn/.,,..
  • 5J. R. Falleri, F. Morandat, X. Blanc, M. Martinez, and M. Montperrus. Fine-grained and accurate source code differencing [C]. In Proceedings of the 29th ACM/IEEE international conference on Automated software engineering, ACM, 2014: 313--324.
  • 6J. Jang, A. Agrawal, and D. Brumley. ReDeBug:Finding unpatched code clones in entire OS distributions[C]. In Proceed- ings of the 35th IEEE Symposium on Security and Privacy, IEEE, 2012: 48--62.

共引文献3

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部