from Hacker News

"No way to prevent this" say users of only language where this regularly happens

by blackhole on 2/1/24, 8:33 PM with 13 comments

  • by marcus0x62 on 2/1/24, 8:51 PM

    For anyone who doesn't regularly follow The Onion, the verbiage in this post is directly copied from the story The Onion posts after every major mass-shooting in the United States.

    An example: https://www.theonion.com/no-way-to-prevent-this-says-only-na...

  • by MattPalmer1086 on 2/1/24, 9:31 PM

    Very funny!

    I just did some coding on C for the first time in years. Now, ok, i'm out of practice, but I'm generally a fairly cautious programmer. I got so many seg faults and weird memory errors in my code. Valgrind found some more that I hadn't spotted.

    It's just too easy to screw it up. Much better to use languages that remove entire classes of bug without you having to even think about it.

  • by ChrisArchitect on 2/1/24, 9:23 PM

    Related (as linked in the article):

    CVE-2023-6246: Heap-based buffer overflow in the glibc's syslog()

    https://news.ycombinator.com/item?id=39194093

  • by stonogo on 2/1/24, 8:58 PM

    I'm almost positive the project being dunked on here is older than the author. There are plenty of reasons to hate glibc, but nothing productive comes of this kind of noise. It's not like heap overflows are impossible in other languages. Consult https://github.com/rust-lang/rust/issues/80894 or consult your preferred CVE database.

    Would love to know what language the author thinks glibc should have been written in in the late eighties.

  • by saagarjha on 2/1/24, 8:53 PM

    > users of the only programming language in the world where these vulnerabilities regularly happen once or twice per quarter for the last eight years

    I wish!

  • by Gow8876 on 2/2/24, 8:41 AM

    Rewrite in Rust?