Uploaded image for project: 'SonarCFamily'
  1. SonarCFamily
  2. CPP-2451

S1081: Fix false-positives by improving the detection mechanism of insecure functions

    Details

    • Type: False-Positive
    • Status: Closed
    • Priority: Major
    • Resolution: Fixed
    • Affects Version/s: None
    • Fix Version/s: 6.7
    • Component/s: C++
    • Labels:
      None

      Description

      Check namespace of the insecure function.
      example:

      namespace fmt{
      int sprintf(...);
      }
      int double_to_string(const double d) {
        return fmt::sprintf("%.16f", d); // FP
      }
      

        Attachments

          Issue Links

            Activity

              People

              • Assignee:
                geoffray.adde Geoffray Adde
                Reporter:
                abbas.sabra Abbas Sabra
              • Votes:
                0 Vote for this issue
                Watchers:
                3 Start watching this issue

                Dates

                • Due:
                  Created:
                  Updated:
                  Resolved: