GrammaTech Streamlines ISO 26262 Compliance for Functional Safety in Automotive IndustryCodeSonar static-analysis tool also helps automotive manufacturers avoid security vulnerabilities
By: Barbara Stewart According to Mark Zarins, vice president of products at GrammaTech, “Software has an increasingly important role in the modern automobile. In fact, a car may contain more than 10 million lines of code. Some of this code controls critical functionality. For example, one car was recently recalled due to a software-related issue that could result in the unintended disabling of passenger-side airbags. Another car was recalled because faulty software could result in the engine being inadvertently shut down. Similar recalls have affected a wide variety of vehicles produced by different manufacturers.” The company has released supplementary documentation to its CodeSonar static-analysis tool that details how static analysis can be used to support an organization’ “In the competitive automotive industry, manufacturers are under pressure to create new features,” continued Mark Zarins. “Some of these features improve safety while others provide better comfort or entertainment. Software plays a key role in most of these new features, underscoring the importance of software quality. In addition, some of the software-enabled features employ networking, which can expose the automobile to potential security threats like worms or malicious code. Yet the growing code size of the software makes it increasingly difficult to test and verify. Manufacturers are adopting static analysis as part of the test plan to increase reliability.” In a prominent example, NASA recently used static analysis to examine the software in Toyota vehicles as part of an investigation into unintended acceleration in Toyota vehicles. GrammaTech CodeSonar was one of the tools used by NASA. In the report, NASA described CodeSonar as a “strong static source code analysis tool from GrammaTech that uses a different technology for detailed inter-procedural source code analysis.” The full NASA Engineering and Safety Center Technical Assessment Report can be located at http://www.nhtsa.gov/ About CodeSonar CodeSonar is a sophisticated static-analysis tool that performs a whole-program, interprocedural analysis on code and identifies complex programming bugs that can result in system crashes, memory corruption and other serious problems. Like a compiler, CodeSonar does a build of the code. However, instead of creating object code, CodeSonar creates an abstract model of the program, capturing information about the program’s control flow and the relationships between data. The program model is executed symbolically by CodeSonar’s analysis engine. Automated reasoning about feasible paths and program variables is used to identify tricky defects, including defects that result from complex interactions among procedures. CodeSonar is backed by years of research and is the most powerful source-code- About GrammaTech GrammaTech’s static-analysis tools are used worldwide by startups, Fortune 500 companies, educational institutions and government agencies. The staff includes thirteen PhD-level experts in programming languages and program analysis. The company has headquarters in Ithaca, NY. More information about GrammaTech can be found at www.grammatech.com. CodeSonar is a registered trademark of GrammaTech, Inc. All other trademarks are property of their respective companies. The URL for this release is located at: http://www.grammatech.com/ North American Sales Contact: GrammaTech, Inc., 317 North Aurora Street, Ithaca, NY 14850, Tel: +1 607-273-7340, Email: info@grammatech.com, Website: www.grammatech.com. International Sales Contacts: UK, SCANDINAVIA and CENTRAL EUROPE: SCL, Jubilee House, Jubilee Walk, Three Bridges, CRAWLEY, West Sussex, RH10 1LQ, UK, Tel: +44 (0)1293 403636, Email: info@scl.com. FRANCE: ISIT, 8 Av. Jean Mermoz, Bât. Les Diamants, 31770 COLOMIERS, FRANCE, Tel: +33 (0)5 61 30 69 00, Fax: +33 (0)5 61 16 50 63, Email: isit@isit.fr. JAPAN: A.I. Corporation, Iijima Bldg, 2-25-2, Nishigotanda, Shinagawa-ku, Tokyo, 141-0031, Japan, Tel: +81-3-3493-7981, Fax: +81-3-3493-7993, Email: sales@aicp.co.jp. KOREA: MDS Technology Co., Ltd., 15F., Kolon Digital Tower Billant, Guro3-dong, Guro-gu, Seoul, Korea, 152-777, Tel: +82-2-2106-6000, Email: grammatech@mdstec.com. # # # A media-relations agency should be a reflection of the industry it serves. With our single-minded focus on e2E technology businesses, we at P&A know the industry thought leaders, the news-making trends and the top influencers. End
|
|