Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

FIO08-A. Check for the existence of links

FIO09-A. fflush() should be called after writing to an output stream if data integrity is important

Rules

FIO30-C. Exclude user input from format strings

...

FIO43-C. Do not copy data from an unbounded source to a fixed-length array

FIO44-C. Only use values for fsetpos() that are returned from fgetpos()

Risk Assessment Summary

Recommendations

Recommendation

Severity

Likelihood

Remediation Cost

Priority

Level

FIO01-A

3 (high)

2 (likely)

1 (high)

P6

L2

FIO02-A

3 (high)

1 (unlikely)

1 (high)

P3

L3

FIO03-A

3 (high)

2 (probable)

1 (high)

P6

L2

FIO04-A

2 (medium)

2 (probable)

1 (high)

P4

L3

FIO05-A

2 (medium)

2 (probable)

2 (medium)

P8

L2

FIO06-A

2 (high)

2 (probable)

2 (medium)

P8

L2

FIO07-A

2 (high)

2 (probable)

2 (medium)

P8

L2

FI008-A

2 (high)

3 (unlikely)

2 (medium)

P12

L1

FI009-A

2 (high)

3 (unlikely)

2 (medium)

P12

L1

Rules

Rule

Severity

Likelihood

Remediation Cost

Priority

Level

FIO30-C

3 (high)

3 (probable)

3 (low)

P27

L1

FIO32-C

3 (high)

2 (probable)

1 (medium)

P6

L2

FIO33-C

1 (low)

1 (low)

3 (medium)

P3

L3

FIO34-C

2 (medium)

2 (probable)

2 (medium)

P8

L2

FIO35-C

1 (low)

1 (unlikely)

2 (medium)

P2

L3

FIO36-C

1 (low)

1 (unlikely)

3 (low)

P3

L3

FI037-C

3 (high)

1 (unlikely)

2 (medium)

P6

L3

FIO38-C

2 (medium)

2 (probable)

2 (medium)

P8

L2

FIO39-C

2 (medium)

2 (probable)

2 (medium)

P8

L2

FIO40-C

2 (medium)

2 (probable)

2 (medium)

P8

L2

FI041-C

2 (medium)

2 (probable)

2 (medium)

P8

L2

FIO42-C

2 (medium)

2 (probable)

2 (medium)

P8

L2

FIO43-C

3 (high)

3 (likely)

2 (low)

P18

L1

FIO44-C

2 (medium)

1 (low)

2 (medium)

P2

L3