[Date Prev][Date Next][Thread Prev][Thread Next]
[Date Index]
[Thread Index]
- Subject: Re: Shared libraries
- From: hasufell <hasufell@...>
- Date: Thu, 22 May 2014 16:15:13 +0000
hasufell:
> Luiz Henrique de Figueiredo:
>>
>> Bottom line: Lua is not a fundamental software component in an OS.
>
> Yes, it is. Every library that is used by multiple programs is a
> fundamental software component.
>
> Lua is currently used by 127 packages. If that is not fundamental, then
> what is?
>
>
And btw... if that wasn't clear enough.
In case of a severe lua vulnerability, we would have to track 127 bug
trackers instead of one (in case they all bundle it).
That completely destroys the idea of distribution-level security.