Secure Coding mailing list archives

RE: [Fwd: DJB's students release 44 *nix software vulnerability advisories]


From: ljknews <ljknews () mac com>
Date: Mon, 20 Dec 2004 22:15:15 +0000

At 8:19 AM -0800 12/20/04, Shea, Brian A wrote:
Isn't the base problem residing in this essentially flawed statement:

"Widely deployed open source software is commonly believed to contain
fewer security vulnerabilities than similar closed source software due
to the possibility of unrestricted third party source code auditing."

The only flaw in that statement is that it is likely to be misinterpreted,
and perhaps was even misinterpreted by the author.

The notion that something "is commonly believed" is quite different from
the notion that something "is true" !
-- 
Larry Kilgallen






Current thread: