摘要
安全漏洞分类和漏洞库设计是计算机安全漏洞研究的基础。在CVE(Common Vulnerabilities and Exposures)的基础上对安全漏洞分类体系进行研究,实现了一套基于CVE的标准漏洞库,开发了相应的生成更新软件,并将其应用于Web查询系统、主动防御系统等多个信息安全系统中,在实际应用中取得了良好的效果。
The foundation of the study of computer security vulnerability includes the classification of security vulnerability and the design of vulnerability database. The security vulnerability classifying system is studied and a standard vulnerability database is designed and then realized on the basis of CVE (Common Vulnerabilities and Exposures). Besides these, the relevant updating software is developed and applied in some fields of information security system, such as Web searching system and active defence system, and has good effects on the practical application.
出处
《微电子学与计算机》
CSCD
北大核心
2007年第3期99-101,共3页
Microelectronics & Computer
关键词
漏洞分类
CVE
漏洞库
vulnerability classification
CVE
vulnerability database