Dataset: Security vulnerabilities in open-source reused systems

  • Antonios Gkortzis (Creator)
  • Daniel Feitosa (Creator)
  • Diomidis Spinellis (Creator)

Dataset

Description

This dataset comprise 2017 Java projects. It contains information related to their external dependencies and its potential and disclosed security vulnerabilities.
The potential vulnerabilities were detected with the use of the SpotBugs static analyzer tool, while the disclosed ones with the use of OWASP Dependency Check tool.
This dataset was generated during a research effort to correlate software reuse to security vulnerabilities.
The scripts for reproducing the dataset and analyzing it are available on GitHub under this link [https://github.com/AntonisGkortzis/Vulnerabilities-in-Reused-Software].
Datum van beschikbaarheid3-nov.-2019
UitgeverUniversity of Groningen
  • A Double-Edged Sword? Software Reuse and Potential Security Vulnerabilities

    Gkortzis, A., Feitosa, D. & Spinellis, D., 2019, Proceedings of the 18th International Conference on Software and Systems Reuse (ICSR '19). Springer, blz. 187-203 16 blz. (Lecture Notes in Computer Science; vol. 11602).

    OnderzoeksoutputAcademicpeer review

    Open Access
    Bestand
    13 Citaten (Scopus)
    267 Downloads (Pure)

Citeer dit