...
Sound automated detection of this vulnerability is not feasible. Heuristic approaches may be useful.
| Tool | Version | Checker | Description | ||||
|---|---|---|---|---|---|---|---|
| Parasoft Jtest |
|
| CERT. |
| EXP05.BUFEXP | Do not expose data wrapped by a buffer to untrusted code |
Bibliography
[API 2014] | |
Section 2.3 "Duplicating Buffers" |
...