Skip site navigation (1)Skip section navigation (2)
Date:      Sat, 23 Jul 2005 17:31:00 -0600 (MDT)
From:      "M. Warner Losh" <imp@bsdimp.com>
To:        grog@lemis.com
Cc:        dougb@freebsd.org, freebsd-current@freebsd.org
Subject:   Re: cvs commit: src/games/fortune/fortune fortune.c
Message-ID:  <20050723.173100.123341239.imp@bsdimp.com>
In-Reply-To: <20050723230711.GD842@wantadilla.lemis.com>
References:  <20050723064449.GZ842@wantadilla.lemis.com> <20050723.130941.93453281.imp@bsdimp.com> <20050723230711.GD842@wantadilla.lemis.com>

next in thread | previous in thread | raw e-mail | index | archive | help
In message: <20050723230711.GD842@wantadilla.lemis.com>
            "Greg 'groggy' Lehey" <grog@lemis.com> writes:
: > If Rush gets more quotes than normal, and that annoys people to find
: > the real problem, we shouldn't mask it.  It is a really bad choice
: > from a security point of view.
: 
: So it's better to back perfectly valid code rather than to look for
: the real culprit?  What kind of security is that?

I'm saying we should fix the real, underlying problem.  Kludging
around the symptom, like you did with fortune, only prolongs the time
we have the real, underlying problem.

Warner



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20050723.173100.123341239.imp>