[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Debian: automated embedded code copy discovery



Hi all,

I recently noted this article about a tool to kill hidden security
issues in Linux distros:

http://lwn.net/Articles/468894/
http://www.scmagazine.com.au/News/280893,tool-kills-hidden-linux-bugs-vulnerabilities.aspx

I note that the researcher's code is open:

http://foocodechu.com/main/?q=node/8
https://github.com/silviocesare/PackageCloneDetection

I think it be most excellent to have this code run over the Debian
archive on a permanent basis with the results examined before each and
every DSA is issued.

Silvio, would you be willing to work with the Debian security team to
port your work to Debian source packages and the Debian security
tracker?

-- 
bye,
pabs

http://wiki.debian.org/PaulWise

Attachment: signature.asc
Description: This is a digitally signed message part


Reply to: