Spectra Assure
Community
Docs

Issues

List of software quality issues with the number of affected components.

high
SQ20122
Detected digital signatures used for code signing that do not have code signing listed for their intended use. (x1)
signatures
high
SQ14157
Detected Windows executable files with delay import functions susceptible to pointer hijacking. (x1)
hardening
medium
SQ20128
Detected digital signatures that do not contain a reference to a certificate revocation server. (x1)
signatures
medium
SQ14140
Detected Windows executable files compiled without following the SDL best practices while using banned string functions. (x1)
hardening
medium
SQ14138
Detected Windows executable files that were compiled without following the recommended SDL process. (x1)
hardening
medium
SQ14128
Detected Windows executable files that do not implement delayed import function hijacking mitigation protection. (x2)
hardening
medium
SQ14125
Detected Windows shared library files that do not suppress exports which reduces CFG vulnerability mitigation protection effectiveness. (x2)
hardening
medium
SQ14122
Detected Windows executable files that do not implement CFG vulnerability mitigation protection. (x2)
hardening
low
SQ20121
Detected digital signatures that have not been performed with an extended validation certificate. (x4)
signatures
low
SQ20119
Detected digital signatures that rely on a weak digest algorithm for integrity validation. (x4)
signatures