Reliability and Security Analysis of Open Source Software
نویسندگان
چکیده
Existing reliability prediction and security assessment of open source software systems seem to focus on analysis based primarily on the number of faults reported against the software. Since information like problem reports, software usage level, and project’s behavior in terms of time taken to fix a problem report are publicly available, it is advantageous to also consider these factors in analyzing open source projects. We study the characteristics of FEDORA (a popular open source project) problem reports for different releases and show that traditional reliability models can be utilized for prediction of problem rates across releases. Also, we estimate the risk exposure due to security problem reports, a subset of the total problem reports. We discuss metrics that could help end-users assess the trustworthiness of open source projects.
منابع مشابه
Reliability analysis and optimal version-updating for open source software
Context: Although reliability is a major concern of most open source projects, research on this problem has attracted attention only recently. In addition, the optimal versiondating for open source software considering its special properties is not yet discussed. Objective: In this paper, the reliability analysis and optimal version-updating for open source software are studied. Method: A modif...
متن کاملAn Empirical Analysis of Exploitation Attempts Based on Vulnerabilities in Open Source Software
For open source software, security attention frequently focuses on the discovery of vulnerabilities prior to release. The large number of diverse people who view the source code may find vulnerabilities before the software product is release. Therefore, open source software has the potential to be more secure than closed source software. Unfortunately, for vulnerabilities found after release, t...
متن کاملReliability Modeling and Assessment for Open Source Cloud Software: A Stochastic Approach
Software development based on the Open Source Software (OSS) model is being increasingly accepted to stand up servers and applications. In particular, Cloud OSS is now attracting attention as the next generation of software products due to cost efficiencies and quick delivery. This chapter focuses on the software reliability modeling and assessment for Cloud computing infrastructure software, e...
متن کاملVulnerabilities and Patches of Open Source Software: An Empirical Study
Software selection is an important consideration in managing the information security function. Open source software is touted by proponents as being robust to many of the security problems that seem to plague proprietary software. This study empirically investigates specific security characteristics of open source and proprietary operating system software. Software vulnerability data spanning ...
متن کاملOpen-source Security Software Security for Open-source Systems
S ome people have claimed that open-source software is intrinsically more secure than closed source, 1 and others have claimed that it's not. 2 Neither case is absolutely true: they are essentially flip sides of the same coin. Open source gives both attackers and defenders greater analytic power to do something about software vulnerabilities. If the defender does nothing about security, though,...
متن کاملذخیره در منابع من
با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید
عنوان ژورنال:
دوره شماره
صفحات -
تاریخ انتشار 2008