ISO/IEC 24772-1:2024

Programming languages — Avoiding vulnerabilities in programming languages — Part 1: Language-independent catalogue of vulnerabilities ISO/IEC 24772-1:2024

Publication date:   Oct 29, 2024

General information

60.60 Standard published   Oct 29, 2024

ISO/IEC

ISO/IEC JTC 1/SC 22 Programming languages, their environments and system software interfaces

International Standard

35.060   Languages used in information technology

Buying

Published

Language in which you want to receive the document.

Scope

This document enumerates approaches and techniques to avoid software programming language vulnerabilities in the development of systems where assured behaviour is required for security, safety, mission-critical and business-critical software. In general, the description of the vulnerabilities and description of avoidance mechanisms are applicable to the software developed, reviewed, or maintained for any application.
Vulnerabilities are described in a generic manner that is applicable to a broad range of programming languages.

Life cycle

PREVIOUSLY

WITHDRAWN
ISO/IEC TR 24772-1:2019

NOW

PUBLISHED
ISO/IEC 24772-1:2024
60.60 Standard published
Oct 29, 2024