USENIX Security2016

APISan: Sanitizing API Usages through Semantic Cross-Checking

Insu Yun, Changwoo Min, Xujie Si, Yeongjin Jang, Taesoo Kim, Mayur Naik

被引用 107 次

摘要

OpenSSL -3841 APIs in [v1.0.2h] -3718 in [v1.0.1t] -> 3841 in [v1.0.2h] (+123 APIs) -OpenSSH uses 158 APIs of OpenSSL Problem: API misuse can cause security problems 4 à MITM à Code execution à Privilege Escalation