openssl version - how to verify

Eitan Adler lists at eitanadler.com
Sat Nov 20 05:08:59 UTC 2010


On Fri, Nov 19, 2010 at 4:36 PM, Jerry <freebsd.user at seibercom.net> wrote:
> On Fri, 19 Nov 2010 15:08:26 -0600
> Adam Vande More <amvandemore at gmail.com> articulated:
>
>> While I agree with your point in this context, the statement "The
>> number of _UNDISCOVERED_ bugs, on the other hand, is an infinite
>> one." is false.
>>
>> http://www.unsw.edu.au/news/pad/articles/2009/sep/microkernel_breakthrough.html
>
> It was later discovered that the software used to certify the kernel
> 100% bug-free was not itself bug-free thereby nullifying results.

The paper  "Diverse Double-Compiling" by David A Wheeler is relevant
although not strictly the same topic. It could be used to avoid this
type of issue.

-- 
Eitan Adler


More information about the freebsd-questions mailing list