on 2014-04-10 14:27 John Sessoms wrote
It's four guys who don't get paid for it. They're all volunteers.
i suspect they are paid, as time to contribute to community software is often a standard part of a developer's compensation; sometimes employees are recruited specifically because of the open-source work they do, and they are expected to continue with that work
One of them made a mistake in revising a section of code that didn't cause crashes or even hiccups, so no one was prompted to look specifically at that bit of code.
i don't know specifically about openssl, but if it were truly peer-reviewed, all the code would be scrutinized whether it crashed or not; not that every bug is ever caught; it's possible the bug was inserted intentionally; i've seen no evidence for this, but it would be hard to rule out
-- PDML Pentax-Discuss Mail List [email protected] http://pdml.net/mailman/listinfo/pdml_pdml.net to UNSUBSCRIBE from the PDML, please visit the link directly above and follow the directions.

