/* goodG2B() - use goodsource and badsink */ private void GoodG2B() { byte data; /* FIX: Use a hardcoded number that won't cause underflow, overflow, divide by zero, or loss-of-precision issues */ data = 2; CWE190_Integer_Overflow__Byte_rand_add_53b.GoodG2BSink(data); }
/* goodB2G() - use badsource and goodsink */ private void GoodB2G() { byte data; /* POTENTIAL FLAW: Use a random value */ data = (byte)(new Random().Next(byte.MinValue, byte.MaxValue)); CWE190_Integer_Overflow__Byte_rand_add_53b.GoodB2GSink(data); }
public override void Bad() { byte data; /* POTENTIAL FLAW: Use a random value */ data = (byte)(new Random().Next(byte.MinValue, byte.MaxValue)); CWE190_Integer_Overflow__Byte_rand_add_53b.BadSink(data); }