... but still, there are THOUSANDS of opensource projects that fail those basic security checks. Explain that away, if it's such a simple problem to solve. At least, we are taking steps. Yep, even when it flies in the face of ISO, which is frankly, not that helpful.
I've been in that exact scenario on systems with a correct deterministic rand() & immediately recognized it as a casualty of OpenBSD's rand() when this was all first discussed.
-
-
The *only* case where deterministic rand() makes sense is regression testing. The fact that it's NOT PORTABLE from platform to platform means it's going to be painful everywhere for actual production code.
Thanks. Twitter will use this to make your timeline better. UndoUndo
-
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.