CWE CATEGORY: Often Misused: String Management
Category ID: 251
Vulnerability Mapping :
PROHIBITED
This CWE ID must not be used to map to real-world vulnerabilities
Summary
Functions that manipulate strings encourage buffer overflows.
Membership
Vulnerability Mapping Notes
Usage:
PROHIBITED
(this CWE ID must not be used to map to real-world vulnerabilities)
Reason:
Category
Rationale:
This entry is a Category. Using categories for mapping has been discouraged since 2019. Categories are informal organizational groupings of weaknesses that can help CWE users with data aggregation, navigation, and browsing. However, they are not weaknesses in themselves.
Comments:
See member weaknesses of this category.
References
Content
History
Submissions
Submission Date
Submitter
Organization
2006-07-19
(CWE Draft 3, 2006-07-19)
7 Pernicious Kingdoms
Modifications
Modification Date
Modifier
Organization
2023-06-29
(CWE 4.12, 2023-06-29)
CWE Content Team
MITRE
updated Mapping_Notes
2023-04-27
(CWE 4.11, 2023-04-27)
CWE Content Team
MITRE
updated Mapping_Notes
2020-06-25
(CWE 4.1, 2020-06-25)
CWE Content Team
MITRE
updated References
2020-02-24
(CWE 4.0, 2020-02-24)
CWE Content Team
MITRE
updated Relationships, Taxonomy_Mappings
2017-11-08
(CWE 3.0, 2017-11-08)
CWE Content Team
MITRE
updated Affected_Resources, Applicable_Platforms, Demonstrative_Examples, Relationships, White_Box_Definitions
2008-09-08
(CWE 1.0, 2008-09-09)
CWE Content Team
MITRE
updated Applicable_Platforms, Relationships, Taxonomy_Mappings
2008-08-01
(CWE 1.0, 2008-09-09)
KDM Analytics
added/updated white box definitions
More information is available — Please edit the custom filter or select a different filter.