At 9:14 AM -0500 12/14/05, Gary McGraw wrote:
> No, that's a copy of stackguard.  The real problem with all of these
> approaches is that they don't fix the root problem.  Finding and removing
> buffer overflow conditions with a static analysis tool is far superior.

But still better is using a programming language that does not allow
buffer overflows.
-- 
Larry Kilgallen
_______________________________________________
Secure Coding mailing list (SC-L)
SC-L@securecoding.org
List information, subscriptions, etc - http://krvw.com/mailman/listinfo/sc-l
List charter available at - http://www.securecoding.org/list/charter.php

Reply via email to