Thanks to visit codestin.com
Credit goes to github.com

Skip to content

Commit f1619f1

Browse files
committed
Python: "source" -> "contextOrigin"
1 parent f14fb3b commit f1619f1

1 file changed

Lines changed: 9 additions & 8 deletions

File tree

python/ql/src/Security/CWE-327/InsecureProtocol.ql

Lines changed: 9 additions & 8 deletions
Original file line numberDiff line numberDiff line change
@@ -18,11 +18,11 @@ string callName(AstNode call) {
1818
exists(Attribute a | a = call | result = callName(a.getObject()) + "." + a.getName())
1919
}
2020

21-
string sourceName(DataFlow::Node source) {
22-
result = "call to " + callName(source.asCfgNode().(CallNode).getFunction().getNode())
21+
string originName(DataFlow::Node contextOrigin) {
22+
result = "call to " + callName(contextOrigin.asCfgNode().(CallNode).getFunction().getNode())
2323
or
24-
not source.asCfgNode() instanceof CallNode and
25-
not source instanceof ContextCreation and
24+
not contextOrigin.asCfgNode() instanceof CallNode and
25+
not contextOrigin instanceof ContextCreation and
2626
result = "context modification"
2727
}
2828

@@ -32,11 +32,12 @@ string verb(boolean specific) {
3232
specific = false and result = "allowed"
3333
}
3434

35-
from DataFlow::Node creation, string insecure_version, DataFlow::Node source, boolean specific
35+
from
36+
DataFlow::Node creation, string insecure_version, DataFlow::Node contextOrigin, boolean specific
3637
where
37-
unsafe_connection_creation(creation, insecure_version, source, specific)
38+
unsafe_connection_creation(creation, insecure_version, contextOrigin, specific)
3839
or
39-
unsafe_context_creation(creation, insecure_version, source.asCfgNode()) and specific = true
40+
unsafe_context_creation(creation, insecure_version, contextOrigin.asCfgNode()) and specific = true
4041
select creation,
4142
"Insecure SSL/TLS protocol version " + insecure_version + " " + verb(specific) + " by $@ ",
42-
source, sourceName(source)
43+
contextOrigin, originName(contextOrigin)

0 commit comments

Comments
 (0)