Want to read Slashdot from your mobile device? Point it at m.slashdot.org and keep reading!

 



Forgot your password?
typodupeerror

+ - Overeager Compilers Can Open Security Holes In Your Code->

Submitted by jfruh
jfruh writes: Creators of compilers are in an arms race to improve performance. But according to a presentantation at this week's annual USENIX conference, those performance boosts can undermine your code's security. For instance, a compiler might find a subroutine that checks a huge bound of memory beyond what's allocated to the program, decide it's an error, and eliminate it from the compiled machine code — even though it's a necessary defense against buffer overflow attacks.
Link to Original Source
This discussion was created for logged-in users only, but now has been archived. No new comments can be posted.

Overeager Compilers Can Open Security Holes In Your Code

Comments Filter:

When it is not necessary to make a decision, it is necessary not to make a decision.

Working...