[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: Looking for a co-maintainer for adduser



On Sun, Oct 05, 2003 at 05:18:45PM -0600, Bob Proulx wrote:

> Saying "well-written" is cheating.  Any well written program is always
> good by definition or it is not be well written.  But what about
> poorly written cruft?  Almost all languages are easy to write badly.
> But some are easier than others.  Both C++ and Perl come to my mind
> when I think of bad programming practices and swiss army chainsaws.

  I think the point is that good code and bad code are possible in any
 language, and the panacea of switching to a particular language and 
 expecting all coding programs to go away is simplistic and unrealistic.

  Sure in some languages like Java there aren't going to be pointer
 problems, but other avenues of attack are just as likely; insecure use
 of temporary files, symlink attacks, signal attacks and etc.

Steve
--
# Debian Security Audit Project
http://www.steve.org.uk/Debian/



Reply to: