Bad for OSS/FS? Certainly no evidence that proprietary will save us!
Posted Sep 18, 2003 3:03 UTC (Thu) by arcticwolf
In reply to: Bad for OSS/FS? Certainly no evidence that proprietary will save us!
Parent article: Remotely exploitable sendmail vulnerability
Unfortunately, though, verifying (and proving) that the source code of a program is correct is not enough, though; you also need to verify both the source *and* the machine code of the compiler being used if you definitely want to be on the safe side. There was an interesting demonstration of this a couple of years ago; I don't recall who it did anymore right now, but with a bit of Googling, it should be possible to find out.
to post comments)