[prev in list] [next in list] [prev in thread] [next in thread] 

List:       oss-security
Subject:    Re: [oss-security] Rust programs in distrbutions (Was: CVE-2023-5217: Heap buffer overflow in vp8 en
From:       Michael Orlitzky <michael () orlitzky ! com>
Date:       2023-09-30 23:28:46
Message-ID: 36a25f2467809ee727239db10684e147e7440326.camel () orlitzky ! com
[Download RAW message or body]

On Sat, 2023-09-30 at 13:00 -0400, Demi Marie Obenour wrote:
> It is also worth noting that Rust-the-language supports dynamic linking.
> Once Cargo supports this and downstreams (like Fedora) obtain sufficient
> build capacity, it will be possible to use dynamic linking by performing
> automatic cascading rebuilds whenever a package is upgraded.  Arch
> already does this for Haskell IIUC.

We do it for Haskell in Gentoo, too, but we have a dark secret: it only
works because Haskell became unpopular. There are basically only two
Haskell programs, and everything works for n =3D 2.

[prev in list] [next in list] [prev in thread] [next in thread] 

Configure | About | News | Add a list | Sponsored by KoreLogic