Slashdot Mirror


Fix the Bugs, Secure the System

LiquidPC writes: "OpenBSD's Louis Bertrand has put his MUSESS 2002 presentation online, entitled Fix the Bugs, Secure the System. Does an overview of OpenBSD, then explains Format String Ugliness, Buffer Overflows, The Wrong Way to Fix Overflows, along with numerous other things."

15 of 334 comments (clear)

  1. Buggy by BrianGa · · Score: -1, Troll

    Just searching for 'OpenBSD Bug' on Google Groups retrieves over 20,500 queries.

  2. Clue deficiencies in full effect... by Anonymous Coward · · Score: -1, Troll

    Doesn't anyone get it? The main way to make systems secure, to fix the bugs, is to make sure it's impossible to make the sorts of errors that are responsible for 95% of bugs and security problems!

    Bounded arrays and no pointers. It's the only way. Java and .NET are the future.

    You open source supporters better learn to use languages with bounded arrays and no pointers, or you'll become nothing but a historical footnote.

  3. Re:Fix the bugs? by topham · · Score: 1, Troll

    Because Microsoft has never shown any level of success with security.

    OpenBSD however has been able to show a significant reduction of problems.

    Microsoft will never deal with the problem until they can keep programmers for more than 5 years activly writing the applications. Instead they hire people at an early age, get some code out of them, and then shuffle them around till they get bored and uninterested in what they do and they move on.

  4. Re:New troll website by Anonymous Coward · · Score: -1, Troll

    this site is amazing! check it out from a fast connection, such as at work or school.

  5. FP??? KEKEKEKEKEKEKEKEKEK ^_________^ by Anonymous Coward · · Score: -1, Troll

    Hahahahahhahaha, I own all j00 fag0rts!!

  6. AHAHAHAHAHAHAHAHA BSD SUCKS ASS!!!! MS RULEZ!!! by Anonymous Coward · · Score: -1, Troll

    MICROSOFT RULES!!! bsdcrap sucks !! Everyon is realizing how shitty bsdcrap is and it is trying to make money before ditching linux for something that can make money on. Oh god this is so great!! AHAHAHHAHA you bsd losers will a convert to Windows soon bsdcrap's death is approaching, can you hear it ? I and Microsoft do! AHAHAHAH.

    This message is brought to you by Microsoft. Providing a safe and secure enviroment while providng useablity and features that no one can rival. Microsoft Windows XP Pro is the best operating system for true IT profesionals around the world anything else only pales in comparison.

  7. BSA AND LINUX SUCK ASS!!! WINDOWS XP PRO RULEZ!!! by Anonymous Coward · · Score: -1, Troll

    BSD AND LINUX SUCK ASS!! Windows Xp Pro OWNZ YOU ALL !! BSD AND LINUX SUCK ASS!! Windows Xp Pro OWNZ YOU ALL !! BSD AND LINUX SUCK ASS!! Windows Xp Pro OWNZ YOU ALL !! BSD AND LINUX SUCK ASS!! Windows Xp Pro OWNZ YOU ALL !! BSD AND LINUX SUCK ASS!! Windows Xp Pro OWNZ YOU ALL !! BSD AND LINUX SUCK ASS!! Windows Xp Pro OWNZ YOU ALL !!

  8. The Facts about *BSD by Anonymous Coward · · Score: -1, Troll
    Fact: *BSD is dying

    Yet another crippling bombshell hit the bleaguered *BSD community when recently IDC confirmed that *BSD accounts for less than a fraction of 1 percent of all servers. Coming on the heels of the latest Netcraft survey which plainly states that *BSD has lost more market share, this news serves to reinforce what we've known all along. *BSD is collapsing in complete disarray, as further exemplified by failing dead last in the recent Sys Admin comprehensive networking test.

    You don't need to be a Kreskin to predict *BSD's future. The hand writing is on the wall: *BSD faces a bleak future. In fact there won't be any future at all for *BSD because *BSD is dying. Things are looking very bad for *BSD. As many of us are already aware, *BSD continues to lose market share. Red ink flows like a river of blood. FreeBSD is the most endangered of them all, having lost 93% of its core developers.

    Let's keep to the facts and look at the numbers.

    OpenBSD leader Theo states that there are 7000 users of OpenBSD. How many users of NetBSD are there? Let's see. The number of OpenBSD versus NetBSD posts on Usenet is roughly in ratio of 5 to 1. Therefore there are about 7000/5 = 1400 NetBSD users. BSD/OS posts on Usenet are about half of the volume of NetBSD posts. Therefore there are about 700 users of BSD/OS. A recent article put FreeBSD at about 80 percent of the *BSD market. Therefore there are (7000+1400+700)*4 = 36400 FreeBSD users. This is consistent with the number of FreeBSD Usenet posts.

    Due to the troubles of Walnut Creek, abysmal sales and so on, FreeBSD went out of business and was taken over by BSDI who sell another troubled OS. Now BSDI is also dead, its corpse turned over to yet another charnel house.

    Recently, Slashdot confirmed that WindRiver bucked FreeBSD out on its ass for a carton of Winstons and a six-pack of Pabst Blue Ribbon. This only serves to confirm the fact that FreeBSD is unwanted, doomed to be passed around like a cross-eyed harelip orphan from one foster parent to another.

    All major surveys show that *BSD has steadily declined in market share. *BSD is very sick and its long term survival prospects are very dim. If *BSD is to survive at all it will be among OS hobbyist dabblers. *BSD continues to decay. Nothing short of a miracle could save it at this point in time. For all practical purposes, *SD is dead.

    Fact: *BSD is dead

  9. Re:The real problem with OpenBSD by Anonymous Coward · · Score: -1, Troll
    Netcraft confirms: *BSD s dying

    Yet another crippling bombshell hit the bleaguered *BSD community when recently IDC confirmed that *BSD accounts for less than a fraction of 1 percent of all servers. Coming on the heels of the latest Netcraft survey which plainly states that *BSD has lost more market share, this news serves to reinforce what we've known all along. *BSD is collapsing in complete disarray, as further exemplified by failing dead last in the recent Sys Admin comprehensive networking test.

    You don't need to be a Kreskin to predict *BSD's future. The hand writing is on the wall: *BSD faces a bleak future. In fact there won't be any future at all for *BSD because *BSD is dying. Things are looking very bad for *BSD. As many of us are already aware, *BSD continues to lose market share. Red ink flows like a river of blood. FreeBSD is the most endangered of them all, having lost 93% of its core developers.

    Let's keep to the facts and look at the numbers.

    OpenBSD leader Theo states that there are 7000 users of OpenBSD. How many users of NetBSD are there? Let's see. The number of OpenBSD versus NetBSD posts on Usenet is roughly in ratio of 5 to 1. Therefore there are about 7000/5 = 1400 NetBSD users. BSD/OS posts on Usenet are about half of the volume of NetBSD posts. Therefore there are about 700 users of BSD/OS. A recent article put FreeBSD at about 80 percent of the *BSD market. Therefore there are (7000+1400+700)*4 = 36400 FreeBSD users. This is consistent with the number of FreeBSD Usenet posts.

    Due to the troubles of Walnut Creek, abysmal sales and so on, FreeBSD went out of business and was taken over by BSDI who sell another troubled OS. Now BSDI is also dead, its corpse turned over to yet another charnel house.

    Recently, Slashdot confirmed that WindRiver bucked FreeBSD out on its ass for a carton of Winstons and a six-pack of Pabst Blue Ribbon. This only serves to confirm the fact that FreeBSD is unwanted, doomed to be passed around like a cross-eyed harelip orphan from one foster parent to another.

    All major surveys show that *BSD has steadily declined in market share. *BSD is very sick and its long term survival prospects are very dim. If *BSD is to survive at all it will be among OS hobbyist dabblers. *BSD continues to decay. Nothing short of a miracle could save it at this point in time. For all practical purposes, *SD is dead.

    Fact: *BSD is dead

  10. Re:BREAKING NEWS : NETCRAFT WEIGHS IN by Anonymous Coward · · Score: -1, Troll

    SHUT UP YOU FUCKING STUPID FUCKING NIGGER!

    NO ONE FUCKING AXED YOU OK YOU COCK GOBLIN.

    SO MANY FUCKING CAT DICK NIGGAS ON SLASHDOT.

    WORD EM UP, FAGS.

    caps caps caps i'll fucking use fucking caps if i want yuou slashdot fags.aps caps caps i'll fucking use fucking caps if i want yuou slashdot fags.aps caps caps i'll fucking use fucking caps if i want yuou slashdot fags.aps caps caps i'll fucking use fucking caps if i want yuou slashdot fags.

    TRY TO BE MORE ORIGINAL? WHAT THE FUCK IS THIS?

    I GOT YOUR MORE ORIGINAL SWINGING RIGHT HERE YOU FUCKING FAGGOT.

  11. Re:CANADA!!!! by Anonymous Coward · · Score: -1, Troll

    CANANDA SUCKS AN ELEPHANT DICK!!!!!!!!!!!!

    you are a faggot, ya ya ya, you are a faggot, ya ya ya...

    It's not my fault your two dads made you rub the mooses third leg.

  12. Re:Why not just mark the stack non-executable? by Anonymous Coward · · Score: -1, Troll

    A Buffy-Overflow is when you are ass-fucking Sarah Michelle Gellar and come in her starfish, and upon pulling out, the demon-seed overflows from her pucker-hole, and dribbles down her thighs.

    Bonus points if Willow laps it up.

  13. Re:Fixing buffer overflows by *ptr EBP by Anonymous Coward · · Score: -1, Troll

    oh shut up, you're stating the obvious, why does everyone here want to show they know C???????

  14. Re:Secure the system: get rid of C by Anonymous Coward · · Score: -1, Troll

    This guy is obviously out of his mind.....C is inappropriate for network daemons?

    Oh yeah, I suggest BASIC

  15. Re:Shouldn't this article be red like BSD stories? by Anonymous Coward · · Score: -1, Troll

    *BSD s dying.