We use cookies to give you the best experience and to help improve our website

Find out what cookies we use and how to disable them

ISO/IEC NP 24772-8 Information technology — Programming languages — Guidance to avoiding vulnerabilities in programming languages — Part 8: Catalogue of vulnerabilities for the programming language Fortran

Scope

This document itemizes programming language vulnerabilities in Fortran to be avoided in the development of systems where assured behaviour is required for security, safety, mission-critical and business-critical software. In general, this need for assured behaviour is applicable to the software developed, reviewed, or maintained for any application.

This document explains how the vulnerabilities catalogued in ISO/IEC 24772-1:2024 “Programming languages -- Avoiding vulnerabilities in programming languages -- Part 1: “Language-independent catalogue of vulnerabilities” manifest in Fortran and documents mechanisms that can be used to avoid the vulnerabilities.

Purpose

ISO/IEC 24772-1 apply to the Fortran programming language as well as avoidance mechanisms that can be applied by the Fortran development team.

ISO/IEC 24772-1:2024, ISO/IEC TR 24772-2 (for programming language Ada) and ISO/IEC TR 24772-3 (for programming language C) are already published, with ISO/IEC 24772-2 and ISO/IEC 24772-3 being prepared for an update. This document provides a similar catalogue of vulnerabilities for the programming language Fortran.

Comment on proposal

Required form fields are indicated by an asterisk (*) character.


Please email further comments to: debbie.stead@bsigroup.com

Follow standard

You are now following this standard. Weekly digest emails will be sent to update you on the following activities:

You can manage your follow preferences from your Account. Please check your mailbox junk folder if you don't receive the weekly email.

Unfollow standard

You have successfully unsubscribed from weekly updates for this standard.

Error