CWE-467: Use of sizeof() on a Pointer Type

VariantDraftExploit Likelihood: High

The code calls sizeof() on a pointer type, which can be an incorrect calculation if the programmer intended to determine the size of the data that is being pointed to.

View on MITRE
Back to CWE Lookup

Extended Description

The use of sizeof() on a pointer can sometimes generate useful information. An obvious case is to find out the wordsize on a platform. More often than not, the appearance of sizeof(pointer) indicates a bug.

Technical Details

Structure
Simple

Applicable To

Languages
CC++
Platforms

Learn More