Quoting Gerardo Di Giacomo <gerardo@xxxxxxxx>:
> Hi. I just subscribed to this Mailing List. I'm interested in auditing
> software & relates. I'd like to be part of this Debian Project.
Hi Gerardo!
What's up with your and other people's auditing?
I haven't done much for the project lately. There's some stuff that looks
promising (=vulnerable), but which needs more time. Some false alarms as well
(code with format string bugs which never gets executed for whatever reason).
I suppose I shouldn't give any details like program names here, as we're a
responsible full disclosure project. (Perhaps the web pages should have some
info about that, Steve?)
--
Ulf Harnhammar
http://www.advogato.org/person/metaur/
|