CodeAnt AI home pagelight logodark logo
  • Dashboard
  • Dashboard
  • Documentation
  • Demo Call with CEO
  • Blog
  • Slack
  • Get Started
    • CodeAnt AI
    • Setup
    • Control Center
    • Pull Request Review
    • IDE
    • Compliance
    • Anti-Patterns
    • Code Governance
    • Infrastructure Security Database
    • Application Security Database
      • Apex
      • Bash
      • C
      • Clojure
      • Cpp
        • Lang
          • Correctness
          • Security
            • Containers
            • Crypto
            • Filesystem
            • Format-string
            • Ldap
            • Libraries
            • Memory
            • Misc
            • Rng
            • Sql
            • Strings
              • Alloc-strlen
              • Missing-nul-cpp-string-memcpy
              • Narrow-to-wide-string-mismatch
              • Readlink-null-terminator
              • Return-c-str
              • Snprintf-return-value-length
              • Snprintf-return-value-snprintf
              • Snprintf-source-size
              • Std-string-npos
              • String-buffer-overflow
                • String buffer overflow
              • String-view-data-null-terminator
              • String-view-temporary-string
              • Unbounded-copy-to-stack-buffer
              • Wide-to-narrow-string-mismatch
            • System-command
            • Uri
            • Use-after-free
        • Libxml2
      • Csharp
      • Dockerfile
      • Elixir
      • Fingerprints
      • Generic
      • Go
      • Html
      • Java
      • Javascript
      • Json
      • Kotlin
      • Ocaml
      • Php
      • Problem-based-packs
      • Python
      • Ruby
      • Rust
      • Scala
      • Solidity
      • Swift
      • Terraform
      • Typescript
      • Yaml
    String-buffer-overflow

    String buffer overflow

    $STR_FUNCTION does not validate the length of the source string which can trigger a buffer overflow
    Likelihood: LOW
    Confidence: LOW
    CWE:
    - CWE-120: Buffer Copy without Checking Size of Input (‘Classic Buffer Overflow’)

    Std string nposString view data null terminator
    twitterlinkedin
    Powered by Mintlify