TE
TechEcho
Home24h TopNewestBestAskShowJobs
GitHubTwitter
Home

TechEcho

A tech news platform built with Next.js, providing global tech news and discussions.

GitHubTwitter

Home

HomeNewestBestAskShowJobs

Resources

HackerNews APIOriginal HackerNewsNext.js

© 2025 TechEcho. All rights reserved.

A survey of BSD kernel vulnerabilities [pdf]

169 pointsby beliualmost 8 years ago

10 comments

kev009almost 8 years ago
This was a great preso.<p>I think we need to fund regular audits of FreeBSD that use this type mindset.
评论 #14876878 未加载
评论 #14871497 未加载
vacrialmost 8 years ago
Impressive that FBSD only had 20% more bugs over OBSD despite having 200% more lines of code.
评论 #14872285 未加载
teporxahoralmost 8 years ago
Ilja is one of the baddest dudes out there. Excellent work once again, chapeau!
评论 #14873220 未加载
sigjuicealmost 8 years ago
OpenBSD stopped claiming &quot;N years without a localhost hole in the default install!&quot; in 2000. See <a href="https:&#x2F;&#x2F;web.archive.org&#x2F;web&#x2F;20000815063126&#x2F;http:&#x2F;&#x2F;openbsd.org:80&#x2F;" rel="nofollow">https:&#x2F;&#x2F;web.archive.org&#x2F;web&#x2F;20000815063126&#x2F;http:&#x2F;&#x2F;openbsd.or...</a> and <a href="https:&#x2F;&#x2F;web.archive.org&#x2F;web&#x2F;20001110110500&#x2F;http:&#x2F;&#x2F;www.openbsd.org:80&#x2F;" rel="nofollow">https:&#x2F;&#x2F;web.archive.org&#x2F;web&#x2F;20001110110500&#x2F;http:&#x2F;&#x2F;www.openbs...</a><p>But Page 6 of this pdf has OpenBSD developers going on about Linux and its 20 localhost kernel security holes in 2005. Seems a bit dishonest.
评论 #14871637 未加载
评论 #14874061 未加载
nreillyalmost 8 years ago
Are there any CVEs for these? Have they been fixed?
评论 #14873733 未加载
Pengtuzialmost 8 years ago
Seems interesting. Is there a recorded talk to go with this?
评论 #14872427 未加载
Piccolloalmost 8 years ago
<p><pre><code> expired pointers, Double frees, Underflows, overflows, signedness, NULL deref, Division by zero, Memory leaks </code></pre> YIKES!
peterwwillisalmost 8 years ago
Blasphemy!
评论 #14871324 未加载
gigatexalalmost 8 years ago
Have the BSD devs seen this? Have the required bugs been filed?
jjawssdalmost 8 years ago
What is the likelihood that we will see a major operating system written in a safe language such as Rust in the next 10 years?
评论 #14872656 未加载
评论 #14871422 未加载
评论 #14872297 未加载
评论 #14871665 未加载
评论 #14875229 未加载
评论 #14873243 未加载