DISA STIG

The categories list for each CodeSonar warning includes any relevant "Finding ID" identifiers from the Defense Information Systems Agency (DISA) Application Security and Development Security Technical Implementation Guide (STIG).

Relevant Warning Classes

The following PDF shows the CodeSonar warning classes that are associated with DISA STIGs and are matched with CodeSonar 7.1.

  • Version 4, release 3 (C/C++, Java, and C# warning classes)
  • Version 3, release 10 (C/C++ warning classes only)

 

Was this article helpful?
0 out of 0 found this helpful

Comments

0 comments

Article is closed for comments.

Articles in this section

See more
GrammaTech Resource Library
Welcome to GrammaTech's resource library. Here you will find useful information about software development in the IoT era, where devices must not only function with impeccable quality and safety but also remain resilient to cyber attacks.
Shift Left Academy
Shift Left Academy is an educational resource to help implement a security first approach. Shift Left focuses on finding and preventing defects and security vulnerabilities early in the software development process
Blog
Posts by topic including static analysis, software assurance, and binary analysis