Slashdot Mirror


User: GigaplexNZ

GigaplexNZ's activity in the archive.

Stories
0
Comments
1,236
First seen
Last seen
Profile
(view on slashdot.org)

Comments · 1,236

  1. Re:Sloppy code on Heartbleed Coder: Bug In OpenSSL Was an Honest Mistake · · Score: 1

    In an unrelated function I saw an array declared on the stack, getting filled up, and then a pointer to this array getting assigned to a field of an argument to this function, and then a return...

    Seriously? What function?

  2. Re:Bigger problem: stupid 'optimizations' on Heartbleed Coder: Bug In OpenSSL Was an Honest Mistake · · Score: 1

    It was a feature addition, not a performance optimisation, that added this bug.

  3. Re:for a library... on Heartbleed Coder: Bug In OpenSSL Was an Honest Mistake · · Score: 2

    Moving away from C just means you now have to have faith in some bytecode virtual machine's memory and buffer management. Is it a more secure approach? Maybe, but if the root complaint is putting faith in complex software, coding in Java or some .NET language means trusting the people coding those engines are equally capable of screwing up. All these higher level virtual machines and interpreters are ultimately written in C.

    Or you could just use C++ complete with their bounds-checked containers.

  4. Re:on purpose or not, couldn't happen if... on Heartbleed Coder: Bug In OpenSSL Was an Honest Mistake · · Score: 1

    All I know is the organization I work for has prohibited use of C or C++ for mission critical software for years now. The languages we use would not ALLOW code to execute which tries to copy 64K from a 2 byte sized container.

    C++ has bounds-checked containers.

  5. Re:Improving? on Heartbleed Coder: Bug In OpenSSL Was an Honest Mistake · · Score: 1

    Still it surprises me that security software can be modified so quickly and with only one review

    It's an open source project, who's going to stop them writing the code and making it available?

  6. Re:He's sorry now ... on Heartbleed Coder: Bug In OpenSSL Was an Honest Mistake · · Score: 1

    This is the second example I've seen in this thread where disclaiming negligence for vehicular accidents is compared to disclaiming negligence for software bugs on an unpaid open source project that companies aren't obligated to use.

    And even if these companies could legally sue (jurisdictions notwithstanding), what would the point be? This is an individual with limited funds - they'd bankrupt him but wouldn't get enough from him to cover their legal fees.

  7. Re:Whatever you may think ... on Heartbleed Coder: Bug In OpenSSL Was an Honest Mistake · · Score: 4, Insightful

    Totally not the same thing. These companies have the option of not using OpenSSL. In your analogy, where's my option of not getting hit by you?

  8. Re:I take it this is a server concern on OpenSSL Bug Allows Attackers To Read Memory In 64k Chunks · · Score: 1

    If you store data on servers (hello cloud) then as a client you should be concerned.

  9. Re:When will Microsoft Retire RT? on Microsoft Ships Surface Pro 2 Tablets With Wrong, Slower Processor · · Score: 1
  10. Re:I Predict on Microsoft Ships Surface Pro 2 Tablets With Wrong, Slower Processor · · Score: 1

    The RT line, with the ARM chips (like what this whole story is about) are not doing so well.

    The title says Pro, the summary says Pro, and the chips in question are quoted in the summary (Intel chips). Where'd you get the impression this was about ARM?

  11. Re:X got from Version 1 to Version 11 in 3 years on Ubuntu's Mir Gets Delayed Again · · Score: 4, Insightful

    Version numbers don't mean a whole lot. Google Chrome hasn't changed much in 33 versions.

  12. Re:No V-Sync on VLC Finally Launches App For Windows 8 · · Score: 1

    Tearing can happen when the frame rate is lower than the screen refresh rate. All it means is that the frame is updated mid screen refresh. Triple buffering can resolve tearing for frame rates lower than the monitor refresh rate at the cost of input lag.

  13. Re:No V-Sync on VLC Finally Launches App For Windows 8 · · Score: 1

    I get quite a bit of tearing with VLC on my Win 7 HTPC.

  14. Re:great news. on VLC Finally Launches App For Windows 8 · · Score: 1

    The Fisher Price UI insult is aimed at XP, not Windows 8. And as long as you don't use any Metro apps, the Windows 8 UI works just fine for desktops and laptops. I don't stare at the start screen for hours on end just like you don't stare at the start menu for hours on end.

  15. Re:Yeah, you can totally trust your data... on 1GB of Google Drive Storage Now Costs Only $0.02 Per Month · · Score: 1

    Because those applications you mention have workarounds, but the underlying problem is that upload speeds are generally so much lower than download speeds as provided by ISPs.

  16. Re: How exactly was it stolen? on Ask Slashdot: How Can I Prepare For the Theft of My Android Phone? · · Score: 1

    Phone and keys in the same pocket? That's a great way to scratch up the phone.

  17. Re:Microwaves? on How Engineers Are Building a Power Station At the South Pole · · Score: 1

    They need to be tall enough to not cook any passers by.

  18. Re:Moderation on Bug In the GnuTLS Library Leaves Many OSs and Apps At Risk · · Score: 1

    To be fair, it IS off topic.

  19. Re: I think I've seen this plan on Japanese Firm Proposes Microwave-Linked Solar Plant On the Moon · · Score: 1

    Relative to the Sun? Yes it does.

  20. You're missing the part where Server 2012 and the R2 variant don't come with the Store enabled, and Metro apps don't work out of the box. You only get the Start Screen part of Metro unless you install the desktop experience components.

  21. Re:For $499 MSRP of Xbox, buy a Steambox instead on Steam Music Now Accepting Beta Signups · · Score: 1

    As the others have already stated, it's not locked down. And even if it is, you could just install a generic Linux distro instead and run Steam on that.

  22. Re:Formats on Steam Music Now Accepting Beta Signups · · Score: 1

    Any software you have for encoding is already licensed

    That's not guaranteed. Most open source software isn't licensed.

    and any non-commercial usage doesn't require a license at all.

    Not accurate. Some, but not all, non-commercial usage doesn't require a license for the media, but the software still needs a license.

  23. Re:LOL on Windows 8.1 Passes Windows Vista In Market Share · · Score: 1

    Check your math. It adds up to 90.7%. Non-Windows makes up the rest.

  24. LibreOffice uses GPU acceleration for various calculations. I'm not quite sure where Mantle plays into this, I'd have thought they'd use OpenCL, but perhaps they do use it somewhere (maybe for drawing charts?)

  25. Re:High end cpu's get little to no boost on AMD Catalyst Driver To Enable Mantle, Fix Frame Pacing, Support HSA For Kaveri · · Score: 1

    MaximumPC paints this a little bit different. Where only lower end cpu's get a big boost in conjecture with higher end AMD cards.

    I was wondering how that made any sense, because I've never seen my i7 more than 20% used in any game where I've monitored CPU usage. However, I haven't played the Battlefield games in years.

    CPUs can bottleneck even at 20% utilisation. The task manager will show 20% average utilisation, but that could mean that it sat at 100% utilisation for 20% of the time, rather than 20% utilisation for 100% of the time (or some mix in between).