[Haskell-cafe] www.galois.com' response to Heartbleed .... .

Vasili I. Galchin vigalchin at gmail.com
Thu Apr 10 02:20:01 UTC 2014


BTW ... .I was quoting on the memcpy issue:


Andras Slemmer wrote:
> Heartbleed is caused by an unchecked memcpy. In particular the size of
the memory chunk to be copied is retrieved from a client request and and is
not checked
>

IMO the computer is backward ..


On Wed, Apr 9, 2014 at 9:18 PM, Vasili I. Galchin <vigalchin at gmail.com>wrote:

>
> http://corp.galois.com/blog/2014/4/9/heartbleed-a-great-time-to-think-about-incident-response.html
>
> BTW I am always very careful when I use memcpy .. .hate that function ...
> read "buffer overrun" big time .....
>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://www.haskell.org/pipermail/haskell-cafe/attachments/20140409/9e4c2e77/attachment.html>


More information about the Haskell-Cafe mailing list