See this document in CiteSeerX!

Checking for Race Conditions in File Accesses (1996)  (Make Corrections)  (52 citations)
To appear in Computing Systems Page 1 of 20 Matt Bishop, Michael Dilger...
Computing Systems



  Home/Search   Context   Related

 
View or download:
ucdavis.edu/papers/bd96.ps
mit.edu/pub/dm/pap...shop:tocttou.ps.gz
ucdavis.edu/~bishop/s...1996compsys.ps
Cached:  PS.gz  PS  PDF   Image  Update  Help

From:  netsys.com/firewalls/firew...0041 (more)
From:  mit.edu/~dm/
(Enter author homepages)

Rate this article: (best)
  Comment on this article  
(Enter summary)

Abstract: Flaws due to race conditions in which the binding of a name to an object changes between repeated references occur in many programs. We examine one type of this flaw in the UNIX operating system, and describe a semantic method for detecting possible instances of this problem. We present the results of one such analysis in which a previously undiscovered race condition flaw was found. 1. Introduction Ordinary bugs and misconfigurations prevent applications or systems from functioning... (Update)

Cited by:   More
Model Checking An Entire Linux Distribution for Security.. - Benjamin Schwarz Hao   (Correct)
Policy and Implementation Assurance for Software Security - Wilander (2005)   (Correct)
Dataflow Anomaly Detection - Bhatkar, Chaturvedi, Sekar   (Correct)

Active bibliography (related documents):   More   All
2.7:   Checking for Race Conditions in File Accesses - Bishop, Dilger (1996)   (Correct)
1.1:   Race Conditions, Files, and Security Flaws; or the Tortoise and.. - Bishop (1995)   (Correct)
0.2:   Vulnerabilities Analysis - Bishop (1999)   (Correct)

Similar documents based on text:   More   All
0.3:   Authentication and Key Agreement via Memorable Password - Kwon (2001)   (Correct)
0.2:   A Critical Analysis of Vulnerability Taxonomies - Bishop, Bailey (1996)   (Correct)
0.2:   A Taxonomy of UNIX System and Network Vulnerabilities - Bishop (1995)   (Correct)

Related documents from co-citation:   More   All
10:   Stackguard: Automatic adaptive detection and prevention of buffer-overflow attac.. - Cowan, Pu et al. - 1998
8:   Checking system rules using system-specific (context) - Engler, Chelf et al. - 2000
8:   FormatGuard: Automatic Protection From printf Format String Vulnerabilities - Cowan, Barringer et al.

BibTeX entry:   (Update)

M. Bishop and M. Dilger. Checking for race conditions in file accesses. In The USENIX Association, Computing Systems, pages 131--152, Spring 1996. http://citeseer.ist.psu.edu/article/bishop96checking.html   More

@article{ bishop96checking,
    author = "Matt Bishop and Michael Dilger",
    title = "Checking for Race Conditions in File Accesses",
    journal = "Computing Systems",
    volume = "9",
    number = "2",
    month = "Spring",
    pages = "131--152",
    year = "1996",
    url = "citeseer.ist.psu.edu/article/bishop96checking.html" }
Citations (may not include all citations):
292   BSD UNIX Operating System (context) - Leffler, McKusick et al. - 1989
265   The Design of the UNIX Operating System (context) - Bach - 1987  ACM
173   The UNIX Time-Sharing System - Ritchie, Thompson - 1974  ACM   DBLP
121   An Intrusion Detection Model (context) - Denning - 1987
88   The X Window System (context) - Scheifler, Gettys - 1987  ACM   DBLP
52   Automated Detection of Vulnerabilities in Privileged Program.. - Ko, Fink et al. - 1994
35   A Taxonomy of Computer Program Security Flaws (context) - Landwehr, Bull et al. - 1994  ACM   DBLP
31   Model-Based Intrusion Detection (context) - Garvey, Lunt - 1991
23   Security Analysis and Enhancements of Computer Operating Sys.. (context) - Abbott, Chin et al. - 1976
21   Property-Based Testing of Privileged Programs - Fink, Levitt - 1994
12   Protection Analysis Project Final Report (context) - Bisbey, Hollingsworth - 1978
10   org via anonymous ftp (context) - Vulnerabilities, CA- et al. - 1995
10   org via anonymous ftp (context) - Vulnerability, CA- et al. - 1993
10   org via anonymous ftp (context) - Vulnerability, CA- et al. - 1990
10   org via anonymous ftp (context) - Vulnerability, CERT et al. - 1994
10   org via anonymous ftp (context) - Vulnerabilities, CA- et al. - 1994
8   Improving System Security via Proactive Password Checking (context) - Bishop, Klein - 1995
7   Introduction to Computability (context) - Hennie - 1977  ACM
1   Protection in Computer Systems (context) - Schroeder - 1975



The graph only includes citing articles where the year of publication is known.


Documents on the same site (http://www.netsys.com/firewalls/firewalls-9708/0041.html):
NetKuang -- A Multi-Host Configuration Vulnerability Checker - Dan Zerkle (1996)   (Correct)
A Methodology for Testing Intrusion Detection Systems - Puketza, Zhang, Chung.. (1996)   (Correct)

Online articles have much greater impact   More about CiteSeer.IST   Add search form to your site   Submit documents   Feedback  

CiteSeer.IST - Copyright Penn State and NEC