Matches in SemOpenAlex for { <https://semopenalex.org/work/W4286331440> ?p ?o ?g. }
Showing items 1 to 74 of
74
with 100 items per page.
- W4286331440 abstract "Open-source libraries save developers time and effort by providing them access to pre-written functions, objects, and methods. The adoption of such libraries follows the current trend of more widespread use of open-source software and components. However, like proprietary software, open-source software can also suffer from defects that can be exploited by attackers. Many of these vulnerabilities have been identified and documented and are stored in Common Vulnerabilities and Exposures (CVE) databases maintained by entities such as NIST. Developers of these open-source components have a responsibility to inform their users of the vulnerabilities that exist in their releases and of the patches that fix these vulnerabilities. Consistent documentation of CVEs is a prerequisite for mitigating these vulnerabilities, especially if an automated approach is taken. This study investigates how well-documented are the patches both in the CVE database, and within the Github commits of C language open-source libraries. The results show that a significant number of CVEs in the NIST database do not mention the existence of patches and that only a small subset of the libraries looked at document CVEs in their commits. This paper comes to the conclusion that mutually agreed upon standards when it comes to CVE documentation should be adopted by both developers of open-source software and the entities that update and maintain CVE databases." @default.
- W4286331440 created "2022-07-21" @default.
- W4286331440 creator A5071682527 @default.
- W4286331440 creator A5082629462 @default.
- W4286331440 date "2022-03-01" @default.
- W4286331440 modified "2023-10-18" @default.
- W4286331440 title "Extracting Vulnerabilities from GitHub Commits" @default.
- W4286331440 cites W1964593071 @default.
- W4286331440 cites W2884642766 @default.
- W4286331440 cites W2898796546 @default.
- W4286331440 cites W2964080672 @default.
- W4286331440 cites W2995345500 @default.
- W4286331440 cites W3041550943 @default.
- W4286331440 cites W3094949573 @default.
- W4286331440 doi "https://doi.org/10.1109/saner53432.2022.00038" @default.
- W4286331440 hasPublicationYear "2022" @default.
- W4286331440 type Work @default.
- W4286331440 citedByCount "1" @default.
- W4286331440 countsByYear W42863314402022 @default.
- W4286331440 crossrefType "proceedings-article" @default.
- W4286331440 hasAuthorship W4286331440A5071682527 @default.
- W4286331440 hasAuthorship W4286331440A5082629462 @default.
- W4286331440 hasConcept C111219384 @default.
- W4286331440 hasConcept C111919701 @default.
- W4286331440 hasConcept C136764020 @default.
- W4286331440 hasConcept C186846655 @default.
- W4286331440 hasConcept C204321447 @default.
- W4286331440 hasConcept C22680326 @default.
- W4286331440 hasConcept C2777904410 @default.
- W4286331440 hasConcept C2988343187 @default.
- W4286331440 hasConcept C29983905 @default.
- W4286331440 hasConcept C3018397939 @default.
- W4286331440 hasConcept C38652104 @default.
- W4286331440 hasConcept C41008148 @default.
- W4286331440 hasConcept C527648132 @default.
- W4286331440 hasConcept C529173508 @default.
- W4286331440 hasConcept C56666940 @default.
- W4286331440 hasConcept C62913178 @default.
- W4286331440 hasConcept C77088390 @default.
- W4286331440 hasConcept C81587897 @default.
- W4286331440 hasConceptScore W4286331440C111219384 @default.
- W4286331440 hasConceptScore W4286331440C111919701 @default.
- W4286331440 hasConceptScore W4286331440C136764020 @default.
- W4286331440 hasConceptScore W4286331440C186846655 @default.
- W4286331440 hasConceptScore W4286331440C204321447 @default.
- W4286331440 hasConceptScore W4286331440C22680326 @default.
- W4286331440 hasConceptScore W4286331440C2777904410 @default.
- W4286331440 hasConceptScore W4286331440C2988343187 @default.
- W4286331440 hasConceptScore W4286331440C29983905 @default.
- W4286331440 hasConceptScore W4286331440C3018397939 @default.
- W4286331440 hasConceptScore W4286331440C38652104 @default.
- W4286331440 hasConceptScore W4286331440C41008148 @default.
- W4286331440 hasConceptScore W4286331440C527648132 @default.
- W4286331440 hasConceptScore W4286331440C529173508 @default.
- W4286331440 hasConceptScore W4286331440C56666940 @default.
- W4286331440 hasConceptScore W4286331440C62913178 @default.
- W4286331440 hasConceptScore W4286331440C77088390 @default.
- W4286331440 hasConceptScore W4286331440C81587897 @default.
- W4286331440 hasLocation W42863314401 @default.
- W4286331440 hasOpenAccess W4286331440 @default.
- W4286331440 hasPrimaryLocation W42863314401 @default.
- W4286331440 hasRelatedWork W10329045 @default.
- W4286331440 hasRelatedWork W11905653 @default.
- W4286331440 hasRelatedWork W1383834 @default.
- W4286331440 hasRelatedWork W14268523 @default.
- W4286331440 hasRelatedWork W14375500 @default.
- W4286331440 hasRelatedWork W2478077 @default.
- W4286331440 hasRelatedWork W3381474 @default.
- W4286331440 hasRelatedWork W3717958 @default.
- W4286331440 hasRelatedWork W5584340 @default.
- W4286331440 hasRelatedWork W7122222 @default.
- W4286331440 isParatext "false" @default.
- W4286331440 isRetracted "false" @default.
- W4286331440 workType "article" @default.