Full Disclosure mailing list archives
Re: Bigger burger roll needed
From: bkfsec <bkfsec () sdf lonestar org>
Date: Thu, 06 Oct 2005 11:10:43 -0400
Micheal Espinola Jr wrote:
But, Curmudgeon's right... you can't just say "yeah, the OS can't handle malformed data, but that's not their problem."I'm not and have not been referring to hackers what-so-ever. I'm referring to poorly written drivers. You guys are all over the place. I'm done. On 10/4/05, Valdis.Kletnieks () vt edu <Valdis.Kletnieks () vt edu> wrote:On Tue, 04 Oct 2005 08:16:34 EDT, Micheal Espinola Jr said:Without getting into specifics that no longer matter, surely they could have did their part better to handle malformed input - but who was malform'ing the input in the first place?That's right. Blame the hackers. Sounds like a sound bite from a Ballmer keynote speech. :)
One of the primary rules of coding is never trust the input. And that is a very valid point. The same flaws in code that cause exploits also cause crashes by their very nature. It's not "all over the place", it's a fact of system design. If they can't avoid mishandling input, then people's expectations will be low. See how it all comes together?
-bkfsec
_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/
Current thread:
- Re: Bigger burger roll needed, (continued)
- Re: Bigger burger roll needed Micheal Espinola Jr (Oct 03)
- Re: Bigger burger roll needed Micheal Espinola Jr (Oct 03)
- Re: Bigger burger roll needed security curmudgeon (Oct 04)
- Re: Bigger burger roll needed Micheal Espinola Jr (Oct 04)
- Re: Bigger burger roll needed security curmudgeon (Oct 04)
- Re: Bigger burger roll needed Valdis . Kletnieks (Oct 04)
- Re: Bigger burger roll needed Micheal Espinola Jr (Oct 04)
- RE: Bigger burger roll needed Randall M (Oct 04)
- Message not available
- Re: Bigger burger roll needed Micheal Espinola Jr (Oct 04)
- Re: Bigger burger roll needed security curmudgeon (Oct 04)
- Re: Bigger burger roll needed bkfsec (Oct 06)
- Re: Bigger burger roll needed Micheal Espinola Jr (Oct 06)
- Message not available
- Re: Bigger burger roll needed bkfsec (Oct 11)
- Re: Bigger burger roll needed James Tucker (Oct 12)
- Re: Bigger burger roll needed Steve Friedl (Oct 04)
- Re: Bigger burger roll needed bkfsec (Oct 06)
- Re: Bigger burger roll needed Steve Friedl (Oct 03)
- Re: Bigger burger roll needed Valdis . Kletnieks (Oct 03)
- Re: Bigger burger roll needed TheGesus (Oct 03)
- Re: Bigger burger roll needed Steve Friedl (Oct 03)
- Re: Bigger burger roll needed Micheal Espinola Jr (Oct 03)
