Buffer Overflow Vulnerability Detection Based on Static Analysis-assisted Symbolic Execution
At a glance
- Citations
- 1
- References
- 11
- Comments
- 0
Abstract
Buffer overflow is a common exploitable high-risk vulnerability that can lead to arbitrary code execution, thus effective detection of buffer overflow vulnerability is of utmost importance for developers, enabling timely remendiation. Symbolic execution is a useful approach to detect it. In this paper, we propose VulDetection to improve the system resource utilization of symbolic execution through static analysis. Firstly, VulDetection uses static analysis techniques to extract the hotspot code segments in the program. Secondly, it uses the hotspot code segments to guide symbolic execution to explore only the vulnerability-related code parts. The experimental evaluation encompasses four vulnerable programs from the EDB vulnerability repository. The obtained experimental results demonstrate that VulDetection can improve the efficiency of vulnerability detection.
Publication details
- DOI
- 10.1109/isceic59030.2023.10271194
- OpenAlex
- W4387444974
- Document type
- conference-paper
- Language
- EN
- Last metadata update
Comments
Log in to join the discussion.