Title Automatically Constructing Peer Slices via Semantic-and Context-Aware Security Checks in the Linux Kernel
Authors Liu, Yongzhi
Chen, Xiarun
Yang, Zhou
Wen, Weiping
Affiliation Peking Univ, Sch Software & Microelect, Beijing, Peoples R China
Issue Date 2021
Publisher 51ST ANNUAL IEEE/IFIP INTERNATIONAL CONFERENCE ON DEPENDABLE SYSTEMS AND NETWORKS (DSN-W 2021)
Abstract OS kernels enforce many security checks to validate system states. We observe that paths containing security checks are in fact very informative in inferring critical semantics in OS kernel. In particular, Such slices are valuable for detecting kernel semantic bugs because understanding semantics is typically required by the detection. However, there are few studies that address security checks, and constructing these slices is challenging due to not only a lack of clear criteria but also the large and complex OS. In this paper, combining security checks with program slicing, we first systematically study security check peer slices and propose an automatic approach to construct security check peer slices in OS kernel. Using an inter-procedural, semantic- and context-aware analysis, we can find slices sharing similar semantics in similar contexts. Based on the information offered by security check peer slices, we then introduce the Scenarios for semantic vulnerability detection by security check peer slices: missing security check and inaccurate security check. The evaluation results show that our approach can accurately constructing security check peer slices.
URI http://hdl.handle.net/20.500.11897/626268
ISBN 978-1-6654-3950-3
ISSN 2325-6648
DOI 10.1109/DSN-W52860.2021.00028
Indexed EI
CPCI-S(ISTP)
Appears in Collections: 软件与微电子学院

Files in This Work
There are no files associated with this item.

Web of Science®


0

Checked on Last Week

Scopus®



Checked on Current Time

百度学术™


0

Checked on Current Time

Google Scholar™





License: See PKU IR operational policies.