Splint Home Page
Splint - Secure Programming Lint
[email protected]
Download<br>Documentation<br>Manual<br>Links
Reporting<br>Bugs -<br>Sponsors<br>Credits
Splint
Annotation-Assisted<br>Lightweight Static Checking
Inexpensive Program Analysis Group
University of Virginia, Department of Computer Science
Secure Programming Lint
SPecifications Lint
First Aid for Programmers
Splint is a tool for statically checking C programs for security<br>vulnerabilities and coding mistakes. With minimal effort, Splint can be<br>used as a better lint. If additional effort is invested adding<br>annotations to programs, Splint can perform stronger checking than can<br>be done by any standard lint.
Advanced Search - Site Directory
-->
Download
Splint Version 3.1.2
Source code: https://github.com/splintchecker/splint
Historical source code distributions - [tgz distribution]
Windows<br>Installer
Linux x86 Binary - [tgz]
FreeBSD x86 Binary - [tgz]
Solaris Binary - [tgz]
Win32 Binary - [zip]
-->
SourceForge Project Page
Current Development Code
Browse<br>Code CVS
--><br>Mailing Lists [splint-discuss archives]
--><br>Links
Documentation
Splint Manual
Papers:<br>Improving Security Using Extensible Lightweight Static<br>Analysis, IEEE Software Jan/Feb 2002; Statically<br>Detecting Likely Buffer Overflow Vulnerabilities, USENIX<br>Security 2001; Static Detection of Dynamic Memory<br>Errors, PLDI 1996; More...
Talks: USENIX<br>Security 2001 [PPT] [PDF]; UW/MSR<br>[PPT] [PDF]; More...
Examples
FAQ (updated 3 May 2004)
Press - external articles
Release - latest release notes
News
5 August 2010
Mao Yu has create a Windows installer for splint-3.1.2: //github.com/maoserr/splint_win32/downloads.
5 December 2008
Christoph Thielecke has developed a Splint GUI, availble for download<br>here:<br>//crissi.linux-administrator.com/linux/splintgui/index_en.html
12 July 2007<br>Splint 3.1.2 is now available (this updates the source distribution to the<br>latest CVS code)
17 Feb 2004
Security holes force firms to rethink coding processes,<br>NetworkWorldFusion, 19 April 2004.
17 Feb 2004David Evans will be speaking 20<br>February 2004 at the
Open Source International Conference 2004 in Malaga, Spain.
17 Feb 2004<br>Splint is described in the German Computer Magazine c't issues 4/2004<br>article,
Fehlersuche in Java (full article not available on line,<br>just links). (Thanks to Steffen Maier for noticing.)
3 Dec 2003<br>Herbert Martin<br>Dietze has provided a new OS/2 binary:
//www.fh-wedel.de/pub/fh-wedel/staff/herbert/splint
1 Nov 2003<br>Scott Frazer has contributed a Borland C++Builder (a free compiler)<br>build. The patches are incorporated into the latest CVS<br>development code and will be in the next release. For directions,<br>see bcc32.html.
31 July 2003
Checking Code and Models in Production Environments, MATLAB<br>Digest, July 2003.
Previous<br>News
Splint development was<br>sponsored by the
National Science Foundation
Splint - Secure Programming Lint
[email protected]
Download<br>Documentation<br>Manual<br>Links
Source<br>Linux<br>Publications<br>Talks
Reporting<br>Bugs
Sponsors<br>Credits