Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

Tool

Version

Checker

Description

CodeSonar
Include Page
CodeSonar_V
CodeSonar_V

BADFUNC.TEMP.*

A collection of checks that report uses of library functions associated with temporary file vulnerabilities

Compass/ROSE

 

 

Can detect violations of this recommendation. Specifically, Rose reports use of tmpnam(), tmpnam_s(), tmpfile(), and mktemp()

Coverity6.5SECURE_TEMPFully implemented
LDRA tool suite
Include Page
LDRA_V
LDRA_V

44 S

Enhanced enforcement

Parasoft C/C++test9.5SECURITY-19Partially implemented
Polyspace Bug FinderR2016aUse of non-secure temporary file

Temporary generated file name not secure

PRQA QA-C
Include Page
PRQA QA-C_v
PRQA QA-C_v
warncall tmpnam, tmpfile, mktemp, tmpnam_s5016Partially implemented

Related Vulnerabilities

...