← Back to context Comment by petee 2 years ago > Stonks only go upAnd the signature totally explains their childish reply, over there and here. 5 comments petee Reply MyMonkeyBalls 2 years ago Yeah even a child like me is better at secure programming than Theo De Raadt petee 2 years ago Then report the bug like an adult instead of acting like you found some huge published vulnerability in code that was posted for peer review. Thats why the code is there, so others can identify issues; congrats, you did.People make mistakes in every project. So grow up tiffanyh 2 years ago Would a code analyzer have detected this bug?(E.g. Valgrind, Flexelint, cppcheck, clang static analyzer, etc.)If yes, then why aren't code analyzers used on all OpenBSD code submissions, given their stance on having correct code & security focused. 1 reply → MyMonkeyBalls 2 years ago [flagged]
MyMonkeyBalls 2 years ago Yeah even a child like me is better at secure programming than Theo De Raadt petee 2 years ago Then report the bug like an adult instead of acting like you found some huge published vulnerability in code that was posted for peer review. Thats why the code is there, so others can identify issues; congrats, you did.People make mistakes in every project. So grow up tiffanyh 2 years ago Would a code analyzer have detected this bug?(E.g. Valgrind, Flexelint, cppcheck, clang static analyzer, etc.)If yes, then why aren't code analyzers used on all OpenBSD code submissions, given their stance on having correct code & security focused. 1 reply → MyMonkeyBalls 2 years ago [flagged]
petee 2 years ago Then report the bug like an adult instead of acting like you found some huge published vulnerability in code that was posted for peer review. Thats why the code is there, so others can identify issues; congrats, you did.People make mistakes in every project. So grow up tiffanyh 2 years ago Would a code analyzer have detected this bug?(E.g. Valgrind, Flexelint, cppcheck, clang static analyzer, etc.)If yes, then why aren't code analyzers used on all OpenBSD code submissions, given their stance on having correct code & security focused. 1 reply → MyMonkeyBalls 2 years ago [flagged]
tiffanyh 2 years ago Would a code analyzer have detected this bug?(E.g. Valgrind, Flexelint, cppcheck, clang static analyzer, etc.)If yes, then why aren't code analyzers used on all OpenBSD code submissions, given their stance on having correct code & security focused. 1 reply →
Yeah even a child like me is better at secure programming than Theo De Raadt
Then report the bug like an adult instead of acting like you found some huge published vulnerability in code that was posted for peer review. Thats why the code is there, so others can identify issues; congrats, you did.
People make mistakes in every project. So grow up
Would a code analyzer have detected this bug?
(E.g. Valgrind, Flexelint, cppcheck, clang static analyzer, etc.)
If yes, then why aren't code analyzers used on all OpenBSD code submissions, given their stance on having correct code & security focused.
1 reply →
[flagged]