How long should security embargoes be?
Posted Mar 1, 2012 12:42 UTC (Thu) by nix
In reply to: How long should security embargoes be?
Parent article: How long should security embargoes be?
A competent programmer working an entire day should be able to fix pretty much any bug
Er, no. Very much no. Bugfixes can take arbitrarily long periods of time, particularly if the bug turns out to be a design error. (My personal record time to fix a bug is six years -- holding off a design change until other events allowed the change -- and, like anyone, I have a number of bugs outstanding in my own code which will likely never be fixed because they are too minor or the required design change would be too large for the benefit.)
to post comments)