...
This rule appears in the C Secure Coding Standard as STR35-C. Do not copy data from an unbounded source to a fixed-length array.
...
Bibliography
Wiki Markup |
---|
\[[Drepper 06|AA. Bibliography#Drepper 06]\] Section 2.1.1, "Respecting Memory Bounds" \[[ISO/IEC 14882-2003|AA. Bibliography#ISO/IEC 14882-2003]\] Sections 3.6.1 Main function, and 18.7 Other runtime support \[[ISO/IEC 9899:1999|AA. Bibliography#ISO/IEC 9899-1999]\] Section 7.19, "Input/output <{{stdio.h}}>" \[[ISO/IEC TR 24731-2006|AA. Bibliography#ISO/IEC TR 24731-2006]\] Section 6.5.4.1, "The {{gets_s}} function" \[[Lai 06|AA. Bibliography#Lai 06]\] \[[MITRE 07|AA. Bibliography#MITRE 07]\] [CWE ID 120|http://cwe.mitre.org/data/definitions/120.html], "Unbounded Transfer ('Classic Buffer Overflow')" \[[NIST 06|AA. Bibliography#NIST 06]\] SAMATE Reference Dataset Test Case ID 000-000-088 \[[Seacord 05a|AA. Bibliography#Seacord 05]\] Chapter 2, "Strings" |
...