Fri 19 - Fri 26 October 2012 Tucson, Arizona, United States

We describe three program transformations that remove integer overflow vulnerabilities from C source code. Implemented as Eclipse plug-ins, these transformations are able to successfully remove integer overflows from NIST’s SAMATE benchmarks and real C programs. These tools assist programmers to develop and maintain programs without integer overflow vulnerabilities.