[Date Prev][Date Next][Thread Prev][Thread Next]
[Date Index]
[Thread Index]
- Subject: Re: C/C++ lua_stackdump lib - feedback welcome
- From: Roberto Ierusalimschy <roberto@...>
- Date: Tue, 11 Oct 2016 14:18:38 -0300
> David A. Wheeler's paper "The Apple goto fail vulnerability: lessons learned" at:
>
> http://www.dwheeler.com/essays/apple-goto-fail.html
>
> also suggests this warning as one of the things that could help serve as a
> countermeasure to pick up this defect.
As this paper says, "This vulnerability showed that Apple has an
extraordinarily poor or non-existent security-relevant test suite."
goto-is-bad-braces-are-good are mostly irrelevant in that case.
-- Roberto