Thanks for proving Bernstein right
Thanks for proving Bernstein right
Posted Nov 4, 2007 19:15 UTC (Sun) by i3839 (guest, #31386)In reply to: Thanks for proving Bernstein right by man_ls
Parent article: Daniel Bernstein: ten years of qmail security
Well, assuming we're talking about open source here, it's more a distro's choice. But programmers knowing that their code is security critical and don't trust it enough should indeed enable a few useful obscure compiler flags. Oops, I gave the wrong example, I meant strncpy instead of strncat. The latter is indeed safe.
