Automated and controlled patch generation for enhanced fixing of communication software vulnerabilities  

在线阅读下载全文

作  者:Shuo Feng Shuai Yuan Zhitao Guan Xiaojiang Du 

机构地区:[1]School of Control and Computer Engineering,North China Electric Power University,Beijing 100029,China [2]Department of Finance,Operations,and Information Systems,Brock University,St.Catharines L2S3A1,Canada [3]Department of Electrical and Computer Engineering,Stevens Institute of Technology,Hoboken,NJ 07030,USA

出  处:《Intelligent and Converged Networks》2024年第3期222-236,共15页智能与融合网络(英文)

基  金:This work was supported by the National Natural Science Foundation of China(No.62372173).

摘  要:Software is a crucial component in the communication systems,and its security is of paramount importance.However,it is susceptible to different types of attacks due to potential vulnerabilities.Meanwhile,significant time and effort is required to fix such vulnerabilities.We propose an automated program repair method based on controlled text generation techniques.Specifically,we utilize a fine-tuned language model for patch generation and introduce a discriminator to evaluate the generation process,selecting results that contribute most to vulnerability fixes.Additionally,we perform static syntax analysis to expedite the patch verification process.The effectiveness of the proposed approach is validated using QuixBugs and Defects4J datasets,demonstrating significant improvements in generating correct patches compared to other existing methods.

关 键 词:automatic program repair controlled text generation communication software security program language model 

分 类 号:TP311[自动化与计算机技术—计算机软件与理论]

 

参考文献:

正在载入数据...

 

二级参考文献:

正在载入数据...

 

耦合文献:

正在载入数据...

 

引证文献:

正在载入数据...

 

二级引证文献:

正在载入数据...

 

同被引文献:

正在载入数据...

 

相关期刊文献:

正在载入数据...

相关的主题
相关的作者对象
相关的机构对象