ISO/IEC DIS 24772-1
Programming languages — Avoiding vulnerabilities in programming languages — Part 1: Language independent catalogue of vulnerabilities
| Organization: | ISO |
| Publication Date: | 2 January 2023 |
| Status: | pending |
| Page Count: | 182 |
| ICS Code (Languages used in information technology): | 35.060 |
scope:
This document specifies software programming language vulnerabilities to be avoided in the development of systems where assured behaviour is required for security, safety, mission-critical and business-critical software. In general, the description of the vulnerabilities and description of avoidance mechanisms are applicable to the software developed, reviewed, or maintained for any application.
Vulnerabilities are described in a generic manner that is applicable to a broad range of programming languages.
Document History