当前位置: X-MOL 学术IEEE Secur. Priv. › 论文详情
Our official English website, www.x-mol.net, welcomes your feedback! (Note: you will need to create a separate account there.)
Known Vulnerabilities of Open Source Projects: Where Are the Fixes?
IEEE Security & Privacy ( IF 1.9 ) Pub Date : 2024-01-05 , DOI: 10.1109/msec.2023.3343836
Antonino Sabetta 1 , Serena Elisa Ponta 1 , Rocio Cabrera Lozoya 1 , Michele Bezzi 1 , Tommaso Sacchetti 2 , Matteo Greco 3 , Gergő Balogh 4 , Péter Hegedűs 4 , Rudolf Ferenc 4 , Ranindya Paramitha 5 , Ivan Pashchenko 6 , Aurora Papotti 7 , Ákos Milánkovich 8 , Fabio Massacci 5
Affiliation  

Every day, developers have the daunting task of tracing vulnerabilities back in a morass of commits. In this article, we report the experience of the industrial open source tool, Prospector, to support developers in this task.

中文翻译:

开源项目的已知漏洞:修复在哪里?

每天,开发人员都面临着在大量提交中追踪漏洞的艰巨任务。在本文中,我们报告了工业开源工具 Prospector 的经验,以支持开发人员完成此任务。
更新日期:2024-01-05
down
wechat
bug