Wheeler: Insecure open source software libraries?
Posted Apr 8, 2012 8:18 UTC (Sun) by
rqosa (subscriber, #24136)
In reply to:
Wheeler: Insecure open source software libraries? by drag
Parent article:
Wheeler: Insecure open source software libraries?
> The model to compare Linux package management solution is other, more effective, solutions like with Android and iOS.
"More effective", yeah right. The insecure-bundled-libraries problem is endemic to those systems, just like it has traditionally been on that other "standard API" platform that's called Java SE.
> I think it should be very possible if you present standard APIs in blocks.
Every platform with "standard APIs" that's ever been tried has caused the exact sort of problem that this article describes. The platform APIs will never be enough for all apps, so the developers must turn to third-party libraries — and there's no way to use these without bundling them.
(
Log in to post comments)