Updates on the campus response to coronavirus (COVID-19)

Ph.D. Proposal Oral Exam - Matthew Pruett

Event Details

Thursday, December 1, 2022

1:00pm - 3:00pm

Room 175, TSRB

For More Information


Event Details

Title:  A Framework for Analyzing Undefined Behavior in C Software


Dr. Keromytis, Advisor

Dr. Monrose, Chair

Dr. Frank Li

Abstract: The objective of the proposed research is to develop a program analysis framework to reason about undefined behavior. Undefined behavior in the C programming language is behavior which is not defined by the language's standard. Reliance on undefined behavior by the programmer may result in behavior that is unintended by the programmer and can introduce vulnerabilities in the software. Despite the abundance of research on software bugs and vulnerabilities, little research has been conducted on undefined behavior apart from a large amount of research focusing on a few well-known vulnerabilities. The proposed research will create a taxonomy of undefined behavior and develop static and dynamic program analyses to determine the security impacts of undefined behavior. It will demonstrate that a program analysis framework can statically detect undefined behavior in program binaries, find vulnerabilities caused by undefined behavior with fuzzing, and enable program equivalence checking in the presence of undefined behavior.

Last revised November 22, 2022