Skip to content

cpp/memory-may-not-be-freed is not in security-and-quality suite #14955

@szsam

Description

@szsam

Description of the issue

The rule cpp/memory-may-not-be-freed in cpp/ql/src/Critical/MemoryMayNotBeFreed.ql (and many other rules in the same directory) is not in the security-and-quality suite.

This is surprising as it is in the Critical/ directory and detects an important kind of security vulnerability. I would expect it in the security-extended or security-and-quality suite.

cpp/memory-may-not-be-freed lacks the property @precision. I believe that is the reason why it is not selected in security-and-quality suite.

- description: Selectors for selecting the security-and-quality queries for a language
- include:
kind:
- problem
- path-problem
precision:
- high
- very-high
- include:
kind:
- problem
- path-problem
precision: medium
problem.severity:
- error
- warning

Metadata

Metadata

Assignees

No one assigned

    Labels

    questionFurther information is requested

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions