-
Notifications
You must be signed in to change notification settings - Fork 39
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Resolving #178 #193
Resolving #178 #193
Conversation
sritejakv
commented
Nov 4, 2019
- Added a boomerang query to find the points to information of the call site parameters. For each of the array parameters, its constants are found by traversing through the jimple method body.
- Added a headless test for SSLParameters.
super(c); | ||
this.icfg = icfg; |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Please do not drag icfg, Bommerang and all that into the constraint solver. The field parsAndVals (defined in line 78) contains the values of all objects. The extraction happens someplace else. Rather move the triggering of Boomerang to retrieve the array values.
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Removed boomerang and icfg and changed the implementation using parsAndVals.
*/ | ||
private BackwardBoomerangResults<NoWeight> getBoomerangResults(Value sootValue, CallSiteWithParamIndex callSite, | ||
ExtractedValue allocSite, ObservableICFG<Unit, SootMethod> dynICFG){ | ||
Boomerang boomerang = new Boomerang(new CogniCryptIntAndStringBoomerangOptions()) { |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Attempt to minimize the number of Boomerang instance over the whole analysis. By moving this code to where the extraction takes place as suggested above, you should be able to get rid of this instance.
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Removed the boomerang call as it is not required.
- Removed the usage of boomerang and icfg. - Array values are fetched using parsAndVals variable.
- Added java doc