Date: Wed, 22 May 2002 20:13:33 +0400 From: "Andrey A. Chernov" <ache@nagual.pp.ru> To: Alexander Leidinger <Alexander@Leidinger.net> Cc: imp@village.org, bts@babbleon.org, kris@obsecurity.org, ports@FreeBSD.ORG, portmgr@FreeBSD.ORG, core@FreeBSD.ORG Subject: Re: My position on commiters guide 10.4.4 Message-ID: <20020522161332.GA799@nagual.pp.ru> In-Reply-To: <20020522141514.GA98951@nagual.pp.ru> References: <20020522054234.GB93907@nagual.pp.ru> <200205221304.g4MD3ujl001185@Magelan.Leidinger.net> <20020522134124.GA98620@nagual.pp.ru> <20020522141514.GA98951@nagual.pp.ru>
next in thread | previous in thread | raw e-mail | index | archive | help
On Wed, May 22, 2002 at 18:15:17 +0400, Andrey A. Chernov wrote: > > I have needed qualification and for that reason I see how big amount of > work needs to be done in that way, this is not simple log message > "something changed", there detailed analyze of program code flow needed. I.e. if you insist on full diff, old vs. new distribution, what you expect to find? Is it a big eye-catching banner in the diff says: ************************************* * Evil hacker insert his code there * ************************************* No. It can be as simple as changing i++ to i--. You must fully (i.e. like developer) understand the program to determite is i-- security crtical or not. -- Andrey A. Chernov http://ache.pp.ru/ To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-ports" in the body of the message
Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20020522161332.GA799>