Clydesdalecrusher
@Clydesdalecrusher@programming.dev
This is a remote user, information on this page may be incomplete. View at Source ↗
- Comment on Today marks the 10th anniversary of the Heartbleed vulnerability in OpenSSL, which had the same ultimate root cause as recent XZUtils backdoor incident 7 months ago:
So am I understanding correctly that this code wasn’t exactly handled as a normal team? Like XZ had one person vetting the replacement?