|
From: | Paul Eggert |
Subject: | Re: master 3139551: Don’t attempt to modify constant strings |
Date: | Mon, 18 May 2020 15:49:20 -0700 |
User-agent: | Mozilla/5.0 (X11; Linux x86_64; rv:68.0) Gecko/20100101 Thunderbird/68.7.0 |
On 5/18/20 12:03 AM, Andreas Schwab wrote:
On Mai 17 2020, Paul Eggert wrote:That would run afoul of the whole idea of clearing the string in the first place, which was to avoid having one's password lying around in memory for a bad actor to grab it.But doing it in the caller is equally bad.
True, thanks, I installed the attached.
0001-Improve-password-cache-add-example-in-comment.patch
Description: Text Data
[Prev in Thread] | Current Thread | [Next in Thread] |