8.4. 源代码的审核

Debian provides several packages that can be used to audit C/C++ source code programs and find programming errors that might lead to potential security flaws:

  • flawfinder

  • rats

  • splint

  • pscan