フリー問題

Security Essentials のフリー問題 11 / 20 問目

問題文

A user reads a report saying that a program crashed and then ran code supplied by an attacker after it received an input longer than expected. Which class of weakness is that and whose fix is it?

選択肢

  1. The report describes a buffer overflow and the fix belongs to the developer who must check the length of every input while the user can only apply the updates that the publisher releases.
  2. The report describes a buffer overflow and the fix belongs to the developer who must check the length of every input while the user can only apply the settings that the reader releases.
  3. The report describes a database overflow and the fix belongs to the developer who must encrypt the length of every input while the user can only apply the updates that the publisher releases.
  4. The report describes a database overflow and the fix belongs to the developer who must encrypt the length of every input while the user can only apply the settings that the reader releases.

解答・解説を確認するには

正解と解説の確認、回答の記録には無料登録が必要です。登録すると演習モードでフリー問題に回答し、正誤と解説をその場で確認できます。