Bom dia!

> Muss das nicht 
> 
> if (memcmp(userEntry, correctPassword, strlen(correctPassword)) != 0)
> 
> heissen??? (ist noch frueh hier also nicht schlagen!!!)

M�sste es, ja. Tut's aber nicht. Das Codest�ckchen stammt laut dem 
Security-guru Paul Kocher (SSL) aus einer echten Anwendung. Der 
verantwortliche Coder geh�rt ordentlich geLARTet.
Ausser dem Denkfehler ist sowas noch anf�llig f�r Buffer Overflows 
etc.
At� j�,

                         BerndA bureaucracy is like a computer program.  
Usually, the question is
how to arrange it so that what you want is composed of operations 
that the
bureaucracy supports.  In addition, in any bureaucracy, there is 
always
*someone* whose job is to approve violations of the rules.



~~~~~~~~~~~~~~~~~~~~~~~~~~~sponsored by United Planet~~~~~~~~~~~~~~~~~
Kaffeepause im United Planet Communityserver ...
http://www.intrexx.com/communityserver                         
_______________________________________________
Coffeehouse mailing list
[EMAIL PROTECTED]
http://www.glengamoi.com/mailman/listinfo/coffeehouse

Antwort per Email an