ISO/IEC 24772-1:2024

Programming languages — Avoiding vulnerabilities in programming languages — Part 1: Language-independent catalogue of vulnerabilities

Publication date:   Oct 29, 2024

General information

60.60 Standard published   Oct 29, 2024

ISO/IEC

ISO/IEC JTC 1/SC 22 Programming languages, their environments and system software interfaces

International Standard

35.060   Languages used in information technology

Buying

  Published

PDF - €159.72

  English  



Buy

Scope

This document enumerates approaches and techniques to avoid software programming language vulnerabilities in the development of systems where assured behaviour is required for security, safety, mission-critical and business-critical software. In general, the description of the vulnerabilities and description of avoidance mechanisms are applicable to the software developed, reviewed, or maintained for any application.
Vulnerabilities are described in a generic manner that is applicable to a broad range of programming languages.

Life cycle

PREVIOUSLY

WITHDRAWN
ISO/IEC TR 24772-1:2019

NOW

PUBLISHED
ISO/IEC 24772-1:2024
60.60 Standard published
Oct 29, 2024