Hermes: Making Path-Sensitive Pointer Analysis Scalable for Sparse Value-Flow Analysis
This program is tentative and subject to change.
Sparse Value-Flow Analysis (SVFA) is essential for detecting software bugs such as null pointer dereference and memory leak. However, SVFA heavily relies on path-sensitive pointer analysis, which faces significant scalability challenges when analyzing industrial-scale projects, notably the summary-explosion problem. To address this issue, we propose Hermes, which symbolizes memory side effects and constructs an incomplete Sparse Value-Flow Graph (SVFG) called Lazy Symbolic Expression Graph (LSEG). Leveraging this structure, Hermes builds inter-procedural value flows relevant to bug detection only when necessary, significantly reducing the overhead of pointer analysis and streamlining the bug-search paths. Evaluations on large-scale real-world projects demonstrate that, compared to the state-of-the-art, Hermes achieves average speedups of at least 9.84× and 4.79× for pointer analysis and bug search, respectively, without sacrificing the effectiveness of bug detection.
This program is tentative and subject to change.
Tue 6 OctDisplayed time zone: Pacific Time (US & Canada) change
10:30 - 12:00 | |||
10:30 18mTalk | Hermes: Making Path-Sensitive Pointer Analysis Scalable for Sparse Value-Flow Analysis OOPSLA Yuxuan He School of Informatics, Xiamen University, Ruilin Jiang School of Informatics, Xiamen University, He Zhang School of Informatics, Xiamen University, Qingkai Shi Nanjing University, Huaxun Huang School of Informatics, Xiamen University, Rongxin Wu Xiamen University | ||
10:48 18mTalk | Heap Abstraction via Early-Confluent Object Merging for Pointer Analysis OOPSLA Jinpeng Wang Nanjing University, Yufei Liang Nanjing University, Zhongsheng Zhan Nanjing University, Tian Tan Nanjing University, Yue Li Nanjing University Pre-print | ||
11:06 18mTalk | Mechanically Translating Iterative Dataflow Analysis to Algebraic Program Analysis OOPSLA Chenyu Zhou University of Southern California, Jingbo Wang Purdue University, Chao Wang University of Southern California | ||
11:24 18mTalk | When FPGA Meets Dataflow Analysis: An Explorative Step OOPSLA Fang Wei Nanjing University, Qinlin Chen Nanjing University, Nairen Zhang Nanjing University, Jiacai Cui Nanjing University, Tian Tan Nanjing University, Zhiqiang Zuo Nanjing University, Yue Li Nanjing University | ||
11:42 18mTalk | Beyond Nominality: Faster Rapid Type Analysis in the Presence of Structural Subtyping OOPSLA | ||