Description
CWE: 400 Resource Exhaustion
BadSource: fscanf Read data from the console using fscanf()
GoodSource: Assign count to be a relatively small number
Sinks: sleep
GoodSink: Validate count before using it as a parameter in sleep function
BadSink : Use count as the parameter for sleep withhout checking its size first
Flow Variant: 82 Data flow: data passed in a parameter to an virtual method called via a pointer
Flaws
Test Suites
Documentation
Have any comments on this test case? Please, send us an email.