Investigation of the Software Code Vulnerabilities' Impact on the Popularity of Open Source Software Projects

被引:0
|
作者
Singh, Madanjit [1 ]
Saini, Munish [2 ]
Kaur, Manevpreet [1 ]
机构
[1] Guru Nanak Dev Univ, Dept Comp Sci, Amritsar, Punjab, India
[2] Guru Nanak Dev Univ, Dept Comp Engn & Technol, Amritsar, Punjab, India
关键词
Code Scanning Tools; Hits; Open Source Software (OSS); Popularity Metrics; Software Quality; Vulnerability;
D O I
10.4018/JITR.2021070104
中图分类号
TP39 [计算机的应用];
学科分类号
081203 ; 0835 ;
摘要
This paper has statically investigated the source code of open source software (OSS) projects to uncover the presence of vulnerabilities in the code. The conducted research emphasizes that the presence of vulnerabilities has adverse effects on the overall software quality. The authors found the increasing trends in the vulnerabilities as the lines of code (LOC) increases during the software evolution. This signifies the fact that the addition of new features or change requests into the OSS project may cause an increase in vulnerability. Further, the relation between software vulnerabilities and popularity is also examined. This research does not find the existence of any relationship among software vulnerabilities and popularity. This research will provide significant implications to the developers and project managers to better understand the present state of the software.
引用
收藏
页码:58 / 69
页数:12
相关论文
共 50 条
  • [1] An investigation of misunderstanding code patterns in C open-source software projects
    Flávio Medeiros
    Gabriel Lima
    Guilherme Amaral
    Sven Apel
    Christian Kästner
    Márcio Ribeiro
    Rohit Gheyi
    Empirical Software Engineering, 2019, 24 : 1693 - 1726
  • [2] An investigation of misunderstanding code patterns in C open-source software projects
    Medeiros, Flavio
    Lima, Gabriel
    Amaral, Guilherme
    Apel, Sven
    Kastner, Christian
    Ribeiro, Marcio
    Gheyi, Rohit
    EMPIRICAL SOFTWARE ENGINEERING, 2019, 24 (04) : 1693 - 1726
  • [3] The Extent of Orphan Vulnerabilities from Code Reuse in Open Source Software
    Reid, David
    Jahanshahi, Mahmoud
    Mockus, Audris
    2022 ACM/IEEE 44TH INTERNATIONAL CONFERENCE ON SOFTWARE ENGINEERING (ICSE 2022), 2022, : 2104 - 2115
  • [4] Code of Conduct Conversations in Open Source Software Projects on Github
    Li, Renee
    Pandurangan, Pavitthra
    Frluckaj, Hana
    Dabbish, Laura
    Proceedings of the ACM on Human-Computer Interaction, 2021, 5 (CSCW1)
  • [5] Impact Assessment for Vulnerabilities in Open-Source Software Libraries
    Plate, Henrik
    Ponta, Serena Elisa
    Sabetta, Antonino
    2015 31ST INTERNATIONAL CONFERENCE ON SOFTWARE MAINTENANCE AND EVOLUTION (ICSME) PROCEEDINGS, 2015, : 411 - 420
  • [6] Time to Discover and Fix Software Vulnerabilities in Open Source Software Projects: Notes on Measurement and Data Availability
    Muegge, Steven M.
    Murshed, S. M. Monzur
    2018 PORTLAND INTERNATIONAL CONFERENCE ON MANAGEMENT OF ENGINEERING AND TECHNOLOGY (PICMET '18): MANAGING TECHNOLOGICAL ENTREPRENEURSHIP: THE ENGINE FOR ECONOMIC GROWTH, 2018,
  • [7] Software analysis by code clones in open source software
    Uchida, S
    Kamiya, T
    Monden, A
    Matsumoto, KI
    Ohsugi, N
    Kudo, H
    JOURNAL OF COMPUTER INFORMATION SYSTEMS, 2005, 45 (03) : 1 - 11
  • [8] Discovering Authorship of Vulnerabilities in Open Source Software
    Ghosh, Krishnendu
    Otero, Damon
    2021 28TH ASIA-PACIFIC SOFTWARE ENGINEERING CONFERENCE WORKSHOPS (APSECW 2021), 2021, : 41 - 46
  • [9] Tracking Patches for Open Source Software Vulnerabilities
    Xu, Congying
    Chen, Bihuan
    Lu, Chenhao
    Huang, Kaifeng
    Peng, Xin
    Liu, Yang
    PROCEEDINGS OF THE 30TH ACM JOINT MEETING EUROPEAN SOFTWARE ENGINEERING CONFERENCE AND SYMPOSIUM ON THE FOUNDATIONS OF SOFTWARE ENGINEERING, ESEC/FSE 2022, 2022, : 860 - 871
  • [10] Source-o-grapher: A tool towards the investigation of software resilience in Open Source Software projects
    Kritikos, Apostolos
    Polychroniadis, Prodromos
    Stamelos, Ioannis
    SOFTWAREX, 2023, 22