Free Republic
Browse · Search
General/Chat
Topics · Post Article

To: N3WBI3
Yeah, nobody uses it now, but it was widely used for what, almost 15 years, with the sources readily available. So where's the "many eyes/shallow bugs" theory now?

Although it's hardly a serious problem now, this really goes to confirm my suspicion that the security benefits of open-source software are in many cases - not all, but many - largely theoretical. I think the reality is that, in most cases, very few people beyond the actual author bother to read/audit the code for the open-source software they use.

7 posted on 08/26/2005 8:16:58 AM PDT by general_re ("Frantic orthodoxy is never rooted in faith, but in doubt." - Reinhold Niebuhr)
[ Post Reply | Private Reply | To 1 | View Replies ]


To: general_re
Yeah, nobody uses it now, but it was widely used for what, almost 15 years. So where's the "many eyes/shallow bugs" theory now?

Many eyes caught this, this was found within the community.. A community that was not as big in the early to mid 1990's as it is now..

Although it's hardly a serious problem now, this really goes to confirm my suspicion that the security benefits of open-source software are in many cases - not all, but many - largely theoretical.

The turnaround time on bugs in the OSS community is huge. And consider you talking about elm an email client almost nobody uses. If we got a notification about every vulnerability in the closed source world I think you would see OSS stacks up quite nicely.

I think the reality is that, in most cases, very few people beyond the actual author bother to read/audit the code for the open-source software they use.

Heres the think, most projects have more than one author if OSS code is written in a UNIX like philosophy and is useful it quickly develops a large development community that will survive the loss of the initial author..

8 posted on 08/26/2005 8:53:29 AM PDT by N3WBI3 (If SCO wants to go fishing they should buy a permit and find a lake like the rest of us..)
[ Post Reply | Private Reply | To 7 | View Replies ]

Free Republic
Browse · Search
General/Chat
Topics · Post Article


FreeRepublic, LLC, PO BOX 9771, FRESNO, CA 93794
FreeRepublic.com is powered by software copyright 2000-2008 John Robinson