0 days 00h 02m 02s until Scan's birthday

Download the full report:
"Measuring software quality: A study of open source software"

How does your code compare to the LAMP stack?
Coverity offers a free trial on your code with the same technology used in this report.
Coverity detects a security hole in X Windows that allows any user with a login to gain root privileges
Amanda releases major version (2.5) of the popular backup and recovery software with milestone of 0 Coverity defects
Scan.coverity.com results in over 1000 patches to projects in the first few weeks

Coverity Study Ranks LAMP Code Quality

DHS Funds Open-Source Security Project
 

Accelerating Open Source Quality

In collaboration with Stanford University, Coverity is establishing a new baseline for software quality and security in open source based on the analysis of over 30 of the most critical and widely used open source projects in the world. Under a contract with the Department of Homeland Security, we apply the latest innovation in automated defect detection to uncover some of the most critical types of bugs found in software.

We are making the results of our automated analysis available to the maintainers within the open source community. Additional projects will be added over time. Please click on the registration link to gain access. We will do our best to respond within one business day.

Total Number of Defects Fixed (since 03/06/2006): 6035                                  
Project Name Fixed Defects* Defect Report Summary** Lines of Code Defect Reports / KLOC View Results Please Register to View Results
Outstanding Verified Uninspected and Pending
AMANDA 128 0 0 98,859 0.000 Sign in Register
emacs 14 0 0 234,335 0.000 Sign in Register
gcc 33 0 0 5,040 0.000 Sign in Register
ntp 5 0 0 130,785 0.000 Sign in Register
OpenPAM 0 0 0 14,657 0.000 Sign in Register
Overdose 2 0 0 15,944 0.000 Sign in Register
Postfix 3 0 0 123,064 0.000 Sign in Register
ProFTPD 7 0 0 43,063 0.000 Sign in Register
Samba 224 0 0 427,293 0.000 Sign in Register
tcl 23 0 0 120,473 0.000 Sign in Register
vim 26 0 0 276,398 0.000 Sign in Register
XMMS 2 0 0 117,295 0.000 Sign in Register
Project Name Fixed Defects* Defect Report Summary** Lines of Code Defect Reports / KLOC View Results Please Register to View Results
Outstanding Verified Uninspected and Pending
apache-httpd 2 9 13 133,748 0.164 Sign in Register
CUWiN 9 0 158 224,614 0.703 Sign in Register
Firebird 0 0 199 271,060 0.734 Sign in Register
Firefox 353 66 166 1,855,717 0.125 Sign in Register
FreeBSD 0 6 605 1,582,166 0.386 Sign in Register
Gaim 197 1 19 218,135 0.092 Sign in Register
GDB 0 0 268 423,588 0.633 Sign in Register
glibc 83 0 2 166,455 0.012 Sign in Register
Gnome 349 12 48 706,511 0.085 Sign in Register
icecast 11 0 8 37,107 0.216 Sign in Register
Inetutils 5 3 21 74,283 0.323 Sign in Register
KDE 1258 10 34 4,619,029 0.010 Sign in Register
Linux-2.6 345 47 326 3,438,292 0.108 Sign in Register
Linux-HA 57 2 18 214,985 0.093 Sign in Register
LVM2 29 3 1 58,035 0.069 Sign in Register
Mono 69 1 72 334,886 0.218 Sign in Register
monotone 2 0 26 299,482 0.087 Sign in Register
MPlayer 57 17 142 498,456 0.319 Sign in Register
Net-SNMP 85 0 83 221,420 0.375 Sign in Register
NetBSD 1267 196 1350 4,717,818 0.328 Sign in Register
OpenLDAP 131 0 1 339,797 0.003 Sign in Register
OpenMotif 16 0 273 509,959 0.535 Sign in Register
OpenSSL 5 0 39 218,275 0.179 Sign in Register
OpenVPN 0 1 0 69,836 0.014 Sign in Register
Perl 47 1 7 511,449 0.016 Sign in Register
PHP 75 0 1 470,996 0.002 Sign in Register
PostgreSQL 53 0 28 847,340 0.033 Sign in Register
Python 77 0 1 281,744 0.004 Sign in Register
Quagga 31 9 20 160,629 0.181 Sign in Register
ruby 11 5 17 260,784 0.084 Sign in Register
snort 40 3 30 116,239 0.284 Sign in Register
SQLite 16 2 3 57,872 0.086 Sign in Register
Squid 2 1 46 145,074 0.324 Sign in Register
Subversion 21 6 0 144,496 0.042 Sign in Register
Wine 84 26 297 1,504,134 0.215 Sign in Register
wireshark 124 0 15 1,388,451 0.011 Sign in Register
wxWidgets 26 2 76 438,901 0.178 Sign in Register
X.org 498 3 0 25,508 0.118 Sign in Register
xine 133 27 33 578,960 0.104 Sign in Register

* The fixed defects column is calculated by adding defects marked by developers as RESOLVED with defects marked as BUG or PENDING which are not present in the most recent analysis run. As such, this figure may under report fixes (for instance, when defects are fixed but not annotated as a defect by developers within the Coverity GUI), or over report fixes (for instance, when defects are annotated by developers in the Coverity GUI in regions of the source code which are subsequently removed from the project's code base).

** Uninspected defect reports have not yet been reviewed by developers and pending defect reports have been flagged as needing further investigation. These defect reports may contain false positives that have no runtime impact on the code. Outstanding verified defect reports have been verified as defects by developers but are still present in the source code.

If you have any questions or would like to request additional
projects to be added to this, please email scan-admin@coverity.com

 

©2006 - Coverity - All Rights Reserved