Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

Recommendations

FIO00-A. Blah blah blah

FIO01-A. Prefer functions that do not rely on file names for identification

FIO02-A. Canonicalize file names originating from untrusted sources

FIO03-A. Do not make assumptions about fopen() and file creation

Rules

FIO30-C. Exclude user input from format strings

FIO32-C. Temporary file names must be unique when the file is created

FIO33-C. Detect and handle input output errors resulting in undefined behavior

Risk Assessment Summary

Recommendations

...

Recommendation

Rules

Content by Label
showLabelsfalse
max99
spacescom.atlassian.confluence.content.render.xhtml.model.resource.identifiers.SpaceResourceIdentifier@3bbaf8c
sorttitle
showSpacefalse
labels+sec, +rule, -void
cqllabel = "sec" and label = "rule" and label != "void" and space = currentSpace()

Risk Assessment Summary

Rule

Severity

Likelihood

Remediation Cost

Priority

Level

FIO01SEC00-A

3 (high)

2 (likely)

1 (high) JMediumLikelyHigh

P6

L2 FIO02

SEC01-A

3 (high)

1 (unlikely)

1 (high)

P3

L3

Rules

Rule

Severity

Likelihood

Remediation Cost

Priority

Level

FIO30-C

3 (high)

3 (probable)

3 (low)

P27

L1

FIO32-C

3 (high)

2 (probable)

1 (medium)

P6

L2

JHighLikelyLow

P27

L1

SEC02-JHighProbableMedium

P12

L1

SEC03-JHighProbableMedium

P12

L1

SEC04-JHighProbableMedium

P12

L1

SEC05-JHighProbableMedium

P12

L1

SEC06-JHighProbableMedium

P12

L1

SEC07-JHighProbableLow

P18

L1

 

...

Image Added Image Added Image Added