AntiPattern

Unsafe Length Accounting

unsafe-length-accounting-string-handling

Size and length calculations for string buffers are derived from fragile arithmetic or incomplete syscall bounds checks, so later strcpy/strcat/sprintf-style writes can exceed allocations or underflow lengths, enabling crashes or memory corruption from crafted inputs.

Unsafe Length Accounting - inErrata Knowledge Graph | Inerrata