{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,10,17]],"date-time":"2025-10-17T14:02:51Z","timestamp":1760709771097,"version":"3.41.0"},"publisher-location":"New York, NY, USA","reference-count":37,"publisher":"ACM","license":[{"start":{"date-parts":[[2018,12,3]],"date-time":"2018-12-03T00:00:00Z","timestamp":1543795200000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.acm.org\/publications\/policies\/copyright_policy#Background"}],"funder":[{"name":"China National Key Basic Research Program","award":["No. 2014CB340600"],"award-info":[{"award-number":["No. 2014CB340600"]}]}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2018,12,3]]},"DOI":"10.1145\/3274694.3274718","type":"proceedings-article","created":{"date-parts":[[2018,12,4]],"date-time":"2018-12-04T13:07:01Z","timestamp":1543928821000},"page":"529-541","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":25,"title":["A Heuristic Framework to Detect Concurrency Vulnerabilities"],"prefix":"10.1145","author":[{"given":"Changming","family":"Liu","sequence":"first","affiliation":[{"name":"Service Comp. Tech. and System Lab, Cluster and Grid Computing Lab, School of Computer Sci. and Tech., Huazhong Univ. of Sci. and Tech., Wuhan, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Deqing","family":"Zou","sequence":"additional","affiliation":[{"name":"Service Comp. Tech. and System Lab, Cluster and Grid Computing Lab, School of Computer Sci. and Tech., Huazhong Univ. of Sci. and Tech., Wuhan, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Peng","family":"Luo","sequence":"additional","affiliation":[{"name":"Service Comp. Tech. and System Lab, Cluster and Grid Computing Lab, School of Computer Sci. and Tech., Huazhong Univ. of Sci. and Tech., Wuhan, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Bin B.","family":"Zhu","sequence":"additional","affiliation":[{"name":"Microsoft Research Asia, Beijing, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Hai","family":"Jin","sequence":"additional","affiliation":[{"name":"Service Comp. Tech. and System Lab, Cluster and Grid Computing Lab, School of Computer Sci. and Tech., Huazhong Univ. of Sci. and Tech., Wuhan, China"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"320","published-online":{"date-parts":[[2018,12,3]]},"reference":[{"key":"e_1_3_2_1_1_1","volume-title":"SWARM: A Parallel Programming Framework for Multicore Processors. 1--8 pages.","author":"Bader D. A.","year":"2007","unstructured":"D. A. Bader , V. Kanade , and K. Madduri . 2007 . SWARM: A Parallel Programming Framework for Multicore Processors. 1--8 pages. D. A. Bader, V. Kanade, and K. Madduri. 2007. SWARM: A Parallel Programming Framework for Multicore Processors. 1--8 pages."},{"key":"e_1_3_2_1_2_1","doi-asserted-by":"publisher","DOI":"10.1145\/3133956.3134020"},{"key":"e_1_3_2_1_3_1","doi-asserted-by":"publisher","DOI":"10.1145\/1736020.1736040"},{"key":"e_1_3_2_1_4_1","doi-asserted-by":"publisher","DOI":"10.1145\/2001420.2001436"},{"key":"e_1_3_2_1_5_1","doi-asserted-by":"publisher","DOI":"10.1145\/2408776.2408795"},{"key":"e_1_3_2_1_6_1","volume-title":"Angora: Efficient Fuzzing by Principled Search. CoRR abs\/1803.01307","author":"Chen Peng","year":"2018","unstructured":"Peng Chen and Hao Chen . 2018 . Angora: Efficient Fuzzing by Principled Search. CoRR abs\/1803.01307 (2018). arXiv:1803.01307 http:\/\/arxiv.org\/abs\/1803.01307 Peng Chen and Hao Chen. 2018. Angora: Efficient Fuzzing by Principled Search. CoRR abs\/1803.01307 (2018). arXiv:1803.01307 http:\/\/arxiv.org\/abs\/1803.01307"},{"key":"e_1_3_2_1_7_1","doi-asserted-by":"publisher","DOI":"10.1109\/ICSE.2017.32"},{"key":"e_1_3_2_1_8_1","doi-asserted-by":"publisher","DOI":"10.1145\/2499370.2462162"},{"key":"e_1_3_2_1_9_1","doi-asserted-by":"publisher","DOI":"10.1145\/2393596.2393651"},{"key":"e_1_3_2_1_10_1","volume-title":"Proceedings of the 16th Network and Distributed System Security Symposium","volume":"8","author":"Godefroid Patrice","year":"2008","unstructured":"Patrice Godefroid , Michael Y. Levin , and David Molnar . 2008 . Automated Whitebox Fuzz Testing . In Proceedings of the 16th Network and Distributed System Security Symposium , Vol. 8 . 151--166. Patrice Godefroid, Michael Y. Levin, and David Molnar. 2008. Automated Whitebox Fuzz Testing. In Proceedings of the 16th Network and Distributed System Security Symposium, Vol. 8. 151--166."},{"key":"e_1_3_2_1_11_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-02658-4_54"},{"key":"e_1_3_2_1_12_1","unstructured":"Marek Kroemeke. 2014. Apache 2.4.7 mod_status - Scoreboard Handling Race Condition. https:\/\/www.exploit-db.com\/exploits\/34133\/.  Marek Kroemeke. 2014. Apache 2.4.7 mod_status - Scoreboard Handling Race Condition. https:\/\/www.exploit-db.com\/exploits\/34133\/."},{"key":"e_1_3_2_1_13_1","unstructured":"Lcamtuf. 2018. American Fuzzy Lop. http:\/\/lcamtuf.coredump.cx\/afl\/.  Lcamtuf. 2018. American Fuzzy Lop. http:\/\/lcamtuf.coredump.cx\/afl\/."},{"key":"e_1_3_2_1_14_1","doi-asserted-by":"publisher","DOI":"10.1145\/3106237.3106295"},{"key":"e_1_3_2_1_15_1","doi-asserted-by":"publisher","DOI":"10.1145\/96267.96279"},{"key":"e_1_3_2_1_16_1","unstructured":"NIST. 2018. National Vulnerability Database. https:\/\/nvd.nist.gov\/.  NIST. 2018. National Vulnerability Database. https:\/\/nvd.nist.gov\/."},{"key":"e_1_3_2_1_17_1","unstructured":"NVD. 2018. CVE-2010--5298 Detail. https:\/\/nvd.nist.gov\/vuln\/detail\/CVE-2010-5298.  NVD. 2018. CVE-2010--5298 Detail. https:\/\/nvd.nist.gov\/vuln\/detail\/CVE-2010-5298."},{"key":"e_1_3_2_1_18_1","unstructured":"OpenBSD. 2014. OpenBSD 5.4 errata 8. https:\/\/ftp.openbsd.org\/pub\/OpenBSD\/ patches\/5.4\/common\/008_openssl.patch.  OpenBSD. 2014. OpenBSD 5.4 errata 8. https:\/\/ftp.openbsd.org\/pub\/OpenBSD\/ patches\/5.4\/common\/008_openssl.patch."},{"key":"e_1_3_2_1_19_1","doi-asserted-by":"publisher","DOI":"10.1145\/1508244.1508249"},{"key":"e_1_3_2_1_20_1","doi-asserted-by":"publisher","DOI":"10.1002\/stvr.1523"},{"key":"e_1_3_2_1_21_1","doi-asserted-by":"publisher","DOI":"10.1145\/1806799.1806838"},{"key":"e_1_3_2_1_22_1","doi-asserted-by":"publisher","DOI":"10.1145\/1772954.1772958"},{"key":"e_1_3_2_1_23_1","doi-asserted-by":"publisher","DOI":"10.1145\/1133255.1134019"},{"key":"e_1_3_2_1_24_1","doi-asserted-by":"publisher","DOI":"10.1145\/1882291.1882301"},{"key":"e_1_3_2_1_25_1","volume-title":"Automated Vulnerability Analysis: Leveraging Control Flow for Evolutionary Input Crafting. In Twenty-Third Annual Computer Security Applications Conference (ACSAC","author":"Sparks Sherri","year":"2007","unstructured":"Sherri Sparks , Shawn Embleton , Ryan K Cunningham , and Cliff Changchun Zou . 2007 . Automated Vulnerability Analysis: Leveraging Control Flow for Evolutionary Input Crafting. In Twenty-Third Annual Computer Security Applications Conference (ACSAC 2007). 477--486. Sherri Sparks, Shawn Embleton, Ryan K Cunningham, and Cliff Changchun Zou. 2007. Automated Vulnerability Analysis: Leveraging Control Flow for Evolutionary Input Crafting. In Twenty-Third Annual Computer Security Applications Conference (ACSAC 2007). 477--486."},{"key":"e_1_3_2_1_26_1","doi-asserted-by":"publisher","DOI":"10.1109\/ICST.2013.33"},{"key":"e_1_3_2_1_27_1","doi-asserted-by":"publisher","DOI":"10.1145\/2884781.2884876"},{"key":"e_1_3_2_1_28_1","doi-asserted-by":"publisher","DOI":"10.1145\/1287624.1287654"},{"key":"e_1_3_2_1_29_1","volume-title":"Proceedings of the 26th USENIX Conference on Security Symposium (SEC'17)","author":"Wang Pengfei","year":"2017","unstructured":"Pengfei Wang , Jens Krinke , Kai Lu , Gen Li , and Steve Dodier-Lazaro . 2017 . How Double-fetch Situations Turn into Double-fetch Vulnerabilities: A Study of Double Fetches in the Linux Kernel . In Proceedings of the 26th USENIX Conference on Security Symposium (SEC'17) . USENIX Association, Berkeley, CA, USA, 1--16. http:\/\/dl.acm.org\/citation.cfm?id=3241189.3241191 Pengfei Wang, Jens Krinke, Kai Lu, Gen Li, and Steve Dodier-Lazaro. 2017. How Double-fetch Situations Turn into Double-fetch Vulnerabilities: A Study of Double Fetches in the Linux Kernel. In Proceedings of the 26th USENIX Conference on Security Symposium (SEC'17). USENIX Association, Berkeley, CA, USA, 1--16. http:\/\/dl.acm.org\/citation.cfm?id=3241189.3241191"},{"key":"e_1_3_2_1_30_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2010.37"},{"key":"e_1_3_2_1_31_1","unstructured":"Wikipedia. 2018. Dirty COW. https:\/\/en.wikipedia.org\/wiki\/Dirty_COW.  Wikipedia. 2018. Dirty COW. https:\/\/en.wikipedia.org\/wiki\/Dirty_COW."},{"key":"e_1_3_2_1_32_1","doi-asserted-by":"publisher","DOI":"10.1145\/2508859.2516736"},{"key":"e_1_3_2_1_33_1","volume-title":"Concurrency Attacks. In Proceedings of the 4th USENIX Conference on Hot Topics in Parallelism (HotPar '12)","author":"Yang Junfeng","year":"2012","unstructured":"Junfeng Yang , Ang Cui , Sal Stolfo , and Simha Sethumadhavan . 2012 . Concurrency Attacks. In Proceedings of the 4th USENIX Conference on Hot Topics in Parallelism (HotPar '12) . USENIX Association, Berkeley, CA, USA, 15--15. http:\/\/dl.acm.org\/citation.cfm?id=2342788.2342803 Junfeng Yang, Ang Cui, Sal Stolfo, and Simha Sethumadhavan. 2012. Concurrency Attacks. In Proceedings of the 4th USENIX Conference on Hot Topics in Parallelism (HotPar '12). USENIX Association, Berkeley, CA, USA, 15--15. http:\/\/dl.acm.org\/citation.cfm?id=2342788.2342803"},{"key":"e_1_3_2_1_34_1","doi-asserted-by":"publisher","DOI":"10.1145\/2384616.2384651"},{"key":"e_1_3_2_1_35_1","doi-asserted-by":"publisher","DOI":"10.1145\/1950365.1950395"},{"key":"e_1_3_2_1_36_1","doi-asserted-by":"publisher","DOI":"10.1145\/1736020.1736041"},{"key":"e_1_3_2_1_37_1","doi-asserted-by":"publisher","DOI":"10.1109\/DSN.2018.00033"}],"event":{"name":"ACSAC '18: 2018 Annual Computer Security Applications Conference","sponsor":["ACSA Applied Computing Security Assoc"],"location":"San Juan PR USA","acronym":"ACSAC '18"},"container-title":["Proceedings of the 34th Annual Computer Security Applications Conference"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3274694.3274718","content-type":"unspecified","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/3274694.3274718","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,6,18]],"date-time":"2025-06-18T00:57:56Z","timestamp":1750208276000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3274694.3274718"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2018,12,3]]},"references-count":37,"alternative-id":["10.1145\/3274694.3274718","10.1145\/3274694"],"URL":"https:\/\/doi.org\/10.1145\/3274694.3274718","relation":{},"subject":[],"published":{"date-parts":[[2018,12,3]]},"assertion":[{"value":"2018-12-03","order":2,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}