Security bugs in embedded interpreters

APSys '13: Proceedings of the 4th Asia-Pacific Workshop on Systems(2013)

引用 15|浏览4
暂无评分
摘要
Because embedded interpreters offer flexibility and performance, they are becoming more prevalent, and can be found at nearly every level of the software stack. As one example, the Linux kernel defines languages to describe packet filtering rules and uses embedded interpreters to filter packets at run time. As another example, the RAR archive format allows embedding bytecode in compressed files to describe reversible transformations for decompression. This paper presents an analysis of common pitfalls in embedded interpreter implementations, which can lead to security vulnerabilities, and their impact. We hope that these results are useful both in augmenting existing embedded interpreters and in aiding developers in building new, more secure embedded interpreters.
更多
查看译文
关键词
security bug,secure embedded interpreter,embedded interpreter,embedded interpreters offer flexibility,rar archive format,existing embedded interpreter,run time,common pitfall,embedded interpreter implementation,linux kernel,reversible transformation
AI 理解论文
溯源树
样例
生成溯源树,研究论文发展脉络
Chat Paper
正在生成论文摘要