Войти в систему

Home
    - Создать дневник
    - Написать в дневник
       - Подробный режим

LJ.Rossia.org
    - Новости сайта
    - Общие настройки
    - Sitemap
    - Оплата
    - ljr-fif

Редактировать...
    - Настройки
    - Список друзей
    - Дневник
    - Картинки
    - Пароль
    - Вид дневника

Сообщества

Настроить S2

Помощь
    - Забыли пароль?
    - FAQ
    - Тех. поддержка



Пишет LWN.net ([info]syn_lwnheadline)
@ 2019-06-25 20:49:00


Previous Entry  Add to memories!  Tell a Friend!  Next Entry
[$] CVE-less vulnerabilities
More bugs in free software are being found these days, which is good for
many reasons, but there are some possible downsides to that as well. In
addition, projects like OSS-Fuzz are
finding lots of bugs in an automated fashion—many of which may be security
relevant. The sheer number of bugs being reported is overwhelming many
(most?) free-software projects, which simply do not have enough eyeballs to
fix, or even triage, many of the reports they receive. A discussion about
that is currently playing out on the oss-security mailing list.


(Читать комментарии) (Добавить комментарий)