Intel AMT bug was strncmp (h/t @reillyeon).
I’d like to take this time to remind everyone how great of a language C is for secure coding.
-
-
And strncpy was invented for Unix directory entry (`struct direct`) ancient 14-char filenames, NUL-padded but not necessariliy terminated!
-
All this old C junk has been trouble. The Morris Worm relied on gets which is by design a buffer overflow prone API. Isn't it past time to +
- 3 more replies
New conversation -
-
-
To reiterate my point from linked thread - that's because almost always using mem* functions is better than str* in C.
Thanks. Twitter will use this to make your timeline better. UndoUndo
-
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.