[prev in list] [next in list] [prev in thread] [next in thread]
List: oss-security
Subject: Re: [oss-security] Rust programs in distrbutions (Was: CVE-2023-5217: Heap buffer overflow in vp8 en
From: Michael Orlitzky <michael () orlitzky ! com>
Date: 2023-09-30 23:28:46
Message-ID: 36a25f2467809ee727239db10684e147e7440326.camel () orlitzky ! com
[Download RAW message or body]
On Sat, 2023-09-30 at 13:00 -0400, Demi Marie Obenour wrote:
> It is also worth noting that Rust-the-language supports dynamic linking.
> Once Cargo supports this and downstreams (like Fedora) obtain sufficient
> build capacity, it will be possible to use dynamic linking by performing
> automatic cascading rebuilds whenever a package is upgraded. Arch
> already does this for Haskell IIUC.
We do it for Haskell in Gentoo, too, but we have a dark secret: it only
works because Haskell became unpopular. There are basically only two
Haskell programs, and everything works for n =3D 2.
[prev in list] [next in list] [prev in thread] [next in thread]
Configure |
About |
News |
Add a list |
Sponsored by KoreLogic