public override void Bad()
 {
     data = int.MinValue; /* Initialize data */
     /* Read data from a database */
     {
         try
         {
             /* setup the connection */
             using (SqlConnection connection = IO.GetDBConnection())
             {
                 connection.Open();
                 /* prepare and execute a (hardcoded) query */
                 using (SqlCommand command = new SqlCommand(null, connection))
                 {
                     command.CommandText = "select name from users where id=0";
                     command.Prepare();
                     using (SqlDataReader dr = command.ExecuteReader())
                     {
                         /* POTENTIAL FLAW: Read data from a database query SqlDataReader */
                         string stringNumber = dr.GetString(1);
                         if (stringNumber != null) /* avoid NPD incidental warnings */
                         {
                             try
                             {
                                 data = int.Parse(stringNumber.Trim());
                             }
                             catch (FormatException exceptNumberFormat)
                             {
                                 IO.Logger.Log(NLog.LogLevel.Warn, exceptNumberFormat, "Number format exception parsing data from string");
                             }
                         }
                     }
                 }
             }
         }
         catch (SqlException exceptSql)
         {
             IO.Logger.Log(NLog.LogLevel.Warn, exceptSql, "Error with SQL statement");
         }
     }
     CWE789_Uncontrolled_Mem_Alloc__Database_Dictionary_68b.BadSink();
 }
 /* goodG2B() - use goodsource and badsink */
 private static void GoodG2B()
 {
     /* FIX: Use a hardcoded number that won't cause underflow, overflow, divide by zero, or loss-of-precision issues */
     data = 2;
     CWE789_Uncontrolled_Mem_Alloc__Database_Dictionary_68b.GoodG2BSink();
 }