Subject: Re: vixie-crontab vunerable?
To: Jason Downs <email@example.com>
From: David Greenman <firstname.lastname@example.org>
Date: 12/16/1996 20:04:59
>Just stay away from the FreeBSD 'fixes'. They have this inane idea that
>they should use snprintf() for copying strings.
For what it's worth, saying "they" suggests that the FreeBSD group has some
sort of policy in this regard, which of course is silly. The truth is that one
person in a group of about 70 people with commit authority fixed the problem
using some snprintf()'s and then later changed it to use strncpy.
Core-team/Principal Architect, The FreeBSD Project