Geoffrey White
|
d2dd19a293
|
C++: It turns out __assert_fail is special (see DefaultOptions.qll) so we don't need a body here. And the body was wrong.
|
2021-01-19 16:56:19 +00:00 |
|
Geoffrey White
|
fe4ae7e975
|
C++: General solution for functions that may exit.
|
2021-01-19 16:56:19 +00:00 |
|
Geoffrey White
|
8fa3ffe125
|
C++: Add a few more test cases that we don't recognize as OK.
|
2021-01-19 16:56:19 +00:00 |
|
Jonas Jensen
|
24947f27b4
|
Merge pull request #4750 from geoffw0/modelclasses
C++: Model classes in StdString.qll.
|
2021-01-19 12:51:30 +01:00 |
|
Geoffrey White
|
cff56350e0
|
C++: Fix getClassAndName parameter name.
|
2021-01-19 10:34:25 +00:00 |
|
Geoffrey White
|
b4a5346dc3
|
C++: It turns out .getTemplate() is not necessary.
|
2021-01-19 08:46:53 +00:00 |
|
Geoffrey White
|
f8a1fb1c35
|
C++: Apply the new pattern where it doesn't matter for performance as well, for consistency.
|
2021-01-19 08:46:53 +00:00 |
|
Geoffrey White
|
bfef1a200e
|
C++: Apply the new pattern in other parts of StdString.qll where it matters.
|
2021-01-19 08:46:53 +00:00 |
|
Geoffrey White
|
b8e6ad8922
|
C++: Introduce new predicate for better performance in models.
|
2021-01-19 08:46:52 +00:00 |
|
Geoffrey White
|
a5632b272e
|
C++: Fix performance issue in hasTaintFlow / hasDataFlow.
|
2021-01-19 08:46:52 +00:00 |
|
Geoffrey White
|
15089c4117
|
Merge branch 'main' into modelclasses
|
2021-01-14 15:57:02 +00:00 |
|
Geoffrey White
|
7012bc05a2
|
C++: Simplification.
|
2021-01-14 15:21:26 +00:00 |
|
Geoffrey White
|
54bd36def2
|
C++: Correct QLDoc comments.
|
2021-01-14 15:20:29 +00:00 |
|
Geoffrey White
|
13d0efe96d
|
C++: Change to more natural expressions without use of weird predicates or 'any'. The classes for string objects now match instantiations directly rather than the template.
|
2021-01-14 15:02:51 +00:00 |
|
Mathias Vorreiter Pedersen
|
3468593d3a
|
Merge pull request #4915 from geoffw0/sqltaint
C++: Fix FPs in cpp/sql-injection
|
2021-01-14 11:20:08 +01:00 |
|
Jonas Jensen
|
5eafe63a82
|
Merge pull request #4941 from geoffw0/cpp409
C++: Test of taint through ConstructorDelegationInit.
|
2021-01-13 15:06:37 +01:00 |
|
Geoffrey White
|
69664535b0
|
Merge pull request #4881 from ihsinme/main
CPP: Add query for CWE-401 memory leak on unsuccessful call to realloc function
|
2021-01-13 10:58:09 +00:00 |
|
Geoffrey White
|
3f09a047ae
|
C++: Test comments.
|
2021-01-12 14:52:52 +00:00 |
|
ihsinme
|
bbd3f7631e
|
Delete test.c
sorry i was in a hurry
|
2021-01-11 23:52:26 +03:00 |
|
ihsinme
|
b92d63d5df
|
Delete CompilerRemovalOfCodeToClearBuffers.qlref
sorry i was in a hurry
|
2021-01-11 23:51:37 +03:00 |
|
ihsinme
|
05f866e912
|
Delete CompilerRemovalOfCodeToClearBuffers.expected
sorry i was in a hurry
|
2021-01-11 23:51:18 +03:00 |
|
ihsinme
|
d7a5e61f8e
|
Delete CompilerRemovalOfCodeToClearBuffers.qhelp
sorry i was in a hurry
|
2021-01-11 23:50:47 +03:00 |
|
ihsinme
|
c38cfcb735
|
Delete CompilerRemovalOfCodeToClearBuffers.ql
sorry i was in a hurry
|
2021-01-11 23:50:19 +03:00 |
|
ihsinme
|
65ff526eef
|
Delete CompilerRemovalOfCodeToClearBuffers.c
sorry i was in a hurry
|
2021-01-11 23:49:53 +03:00 |
|
ihsinme
|
ed6d8e3d18
|
Add files via upload
|
2021-01-11 23:40:38 +03:00 |
|
ihsinme
|
b185a33157
|
Add files via upload
|
2021-01-11 23:39:02 +03:00 |
|
Geoffrey White
|
7409dd015e
|
C++: Autoformat.
|
2021-01-11 18:58:32 +00:00 |
|
ihsinme
|
b28444b55c
|
Update MemoryLeakOnFailedCallToRealloc.ql
I thought since there is no work on this PR, I will delete the residual import.
|
2021-01-11 21:17:49 +03:00 |
|
Geoffrey White
|
1cde5e1828
|
C++: Test of taint through ConstructorDelegationInit.
|
2021-01-11 17:35:50 +00:00 |
|
Geoffrey White
|
cf1d1dc5c0
|
C++: Remove old tags.
|
2021-01-11 09:31:06 +00:00 |
|
Geoffrey White
|
70ce5fde75
|
C++: Improve metadata for GlobalNamespaceClasses.ql.
|
2021-01-08 18:27:06 +00:00 |
|
Geoffrey White
|
a6937beee3
|
Merge branch 'main' into sqltaint
|
2021-01-08 17:27:43 +00:00 |
|
Geoffrey White
|
7f0209f72e
|
Merge branch 'main' into modelclasses
|
2021-01-08 17:11:25 +00:00 |
|
Mathias Vorreiter Pedersen
|
13a67c906e
|
Merge pull request #4810 from geoffw0/multtoalloc
C++: Query for multiplications used in allocations.
|
2021-01-07 13:48:58 +01:00 |
|
ihsinme
|
2d6dafc6be
|
Update MemoryLeakOnFailedCallToRealloc.ql
|
2021-01-07 15:44:50 +03:00 |
|
ihsinme
|
f378c14659
|
Update MemoryLeakOnFailedCallToRealloc.expected
|
2021-01-07 15:43:58 +03:00 |
|
ihsinme
|
592cd284e8
|
Update test.c
|
2021-01-07 15:41:31 +03:00 |
|
ihsinme
|
abdeaabd77
|
Update MemoryLeakOnFailedCallToRealloc.ql
|
2021-01-06 22:46:03 +03:00 |
|
ihsinme
|
2b8227e04d
|
Update cpp/ql/src/experimental/Security/CWE/CWE-401/MemoryLeakOnFailedCallToRealloc.ql
Co-authored-by: Geoffrey White <40627776+geoffw0@users.noreply.github.com>
|
2021-01-06 22:23:46 +03:00 |
|
ihsinme
|
f7eb328f76
|
Update cpp/ql/src/experimental/Security/CWE/CWE-401/MemoryLeakOnFailedCallToRealloc.qhelp
Co-authored-by: Geoffrey White <40627776+geoffw0@users.noreply.github.com>
|
2021-01-06 22:18:14 +03:00 |
|
ihsinme
|
d7f31ca1a0
|
Update cpp/ql/src/experimental/Security/CWE/CWE-401/MemoryLeakOnFailedCallToRealloc.qhelp
Co-authored-by: Geoffrey White <40627776+geoffw0@users.noreply.github.com>
|
2021-01-06 22:17:26 +03:00 |
|
Geoffrey White
|
b5bcbd303e
|
C++: Cleaner solution.
|
2021-01-06 18:22:31 +00:00 |
|
Geoffrey White
|
f69ceb3dbb
|
Merge pull request #4904 from MathiasVP/conflated-dataflow-testcases
C++: Add dataflow testcases that need flow through conflated memory
|
2021-01-06 17:48:18 +00:00 |
|
Geoffrey White
|
81205f37c5
|
C++: Fix test annotation.
|
2021-01-06 11:45:17 +00:00 |
|
Geoffrey White
|
18890c4a77
|
C++: Use isAdditionalBarrier in the SqlTainted query.
|
2021-01-05 11:33:39 +00:00 |
|
Geoffrey White
|
69efe7a72a
|
C++: Add isAdditionalBarrier to DefaultTaintTracking.
|
2021-01-05 11:32:43 +00:00 |
|
Geoffrey White
|
01b204ea30
|
C++: Add a test case with a tainted integer.
|
2021-01-04 15:35:18 +00:00 |
|
Geoffrey White
|
7a3f9c7895
|
C++: Add a test (cleaned up) that was previously in the internal repo.
|
2021-01-04 15:35:18 +00:00 |
|
Mathias Vorreiter Pedersen
|
bb158f1857
|
C++: Add dataflow testcases that need flow through conflated memory.
|
2021-01-04 11:43:23 +01:00 |
|
Mathias Vorreiter Pedersen
|
134982c5a9
|
C++: Respond to review comments.
|
2021-01-04 09:06:58 +01:00 |
|