SPLASH 2012 (series) / ACM Student Research Competition /
Security-oriented program transformations to cure integer overflow vulnerabilities
We describe three program transformations that remove integer overflow vulnerabilities from C source code. Implemented as Eclipse plug-ins, these transformations are able to successfully remove integer overflows from NIST’s SAMATE benchmarks and real C programs. These tools assist programmers to develop and maintain programs without integer overflow vulnerabilities.