Skip to main content
assistive.skiplink.to.breadcrumbs
assistive.skiplink.to.header.menu
assistive.skiplink.to.action.menu
assistive.skiplink.to.quick.search
Log in
Confluence
Spaces
Hit enter to search
Help
Online Help
Keyboard Shortcuts
Feed Builder
What’s new
Available Gadgets
About Confluence
Log in
SEI CERT C Coding Standard
Pages
Boards
Space shortcuts
Dashboard
Secure Coding Home
Android
C
C++
Java
Perl
Page tree
Browse pages
Configure
Space tools
View Page
A
t
tachments (0)
Page History
Page Information
View in Hierarchy
View Source
Export to PDF
Export to Word
Pages
…
SEI CERT C Coding Standard
3 Recommendations
Rec. 07. Characters and Strings (STR)
STR07-C. Use the bounds-checking interfaces for string manipulation
Page Information
Title:
STR07-C. Use the bounds-checking interfaces for string manipulation
Author:
Admin
Aug 23, 2006
Last Changed by:
Jill Britton
Apr 20, 2023
Tiny Link:
(useful for email)
https://wiki.sei.cmu.edu/confluence/x/HdcxBQ
Export As:
Word
·
PDF
Incoming Links
SEI CERT C Coding Standard (8)
Page:
MSC24-C. Do not use deprecated or obsolescent functions
Page:
STR01-C. Adopt and implement a consistent plan for managing strings
Page:
INT01-C. Use rsize_t or size_t for all integer values representing the size of an object
Page:
INT13-C. Use bitwise operators only on unsigned operands
Page:
DCL03-C. Use a static assertion to test the value of a constant expression
Page:
PRE09-C. Do not replace secure functions with deprecated or obsolescent functions
Page:
STR03-C. Do not inadvertently truncate a string
Page:
STR31-C. Guarantee that storage for strings has sufficient space for character data and the null terminator
Hierarchy
Parent Page
Page:
Rec. 07. Characters and Strings (STR)
Labels
Global Labels (6)
ldra
android-applicable
unenforceable
tr24731
recommendation
str
Recent Changes
Time
Editor
Apr 20, 2023 06:27
Jill Britton
View Changes
Sep 26, 2022 16:19
Anirban Gangopadhyay
View Changes
Apr 26, 2021 04:15
Jill Britton
View Changes
Apr 21, 2021 05:24
Jill Britton
View Changes
Apr 20, 2021 06:41
Jill Britton
View Page History
Outgoing Links
External Links (7)
https://www.sonarsource.com/products/codeanalyzers/sonarcfa…
https://www.kb.cert.org/vulnotes/bymetric?searchview&query=…
https://www.securecoding.cert.org/confluence/display/seccod…
https://www.mathworks.com/help/bugfinder/ref/certcrec.str07…
https://wiki.sei.cmu.edu/confluence/pages/viewpage.action?p…
https://wiki.sei.cmu.edu/confluence/pages/viewpage.action?p…
https://wiki.sei.cmu.edu/confluence/pages/viewpage.action?p…
SEI CERT C Coding Standard (21)
Page:
CodeSonar_V
Page:
LDRA
Page:
Parasoft
Page:
INT01-C. Use rsize_t or size_t for all integer values representing the size of an object
Page:
Polyspace Bug Finder_V
Page:
Axivion Bauhaus Suite_V
Page:
Astrée_V
Home page:
SEI CERT C Coding Standard
Page:
Axivion Bauhaus Suite
Page:
Helix QAC
Page:
Polyspace Bug Finder
Page:
PC-lint Plus_V
Page:
Helix QAC_V
Page:
AA. Bibliography
Page:
CodeSonar
Page:
BB. Definitions
Page:
DCL03-C. Use a static assertion to test the value of a constant expression
Page:
LDRA_V
Page:
PC-lint Plus
Page:
Parasoft_V
Page:
Astrée
Overview
Content Tools
{"serverDuration": 81, "requestCorrelationId": "923edabc86a59636"}