Stable kernel 2.6.25.10
Posted Jul 4, 2008 14:32 UTC (Fri) by
vonbrand (subscriber, #4458)
In reply to:
Stable kernel 2.6.25.10 by PaXTeam
Parent article:
Stable kernel 2.6.25.10
Yes, I do understand this stuff. But I've also fixed bugs that turned out (later!) to be security vulnerabilities. Sure, "possible buffer overflow" (and other classes) is a big warning sign, but not a guarantee that it is exploitable.
I much prefer kernel (and other) developers fixing bugs than running around finding out if bugs can be exploited. And a bug that can't be exploited today might become exploitable in the future due to changes elsewhere. Finding out if a bug is exploitable is a different skill than development.
(
Log in to post comments)