Developers of open source software projects should be just as concerned about security as anyone developing a proprietary app. However, the nature of the two development processes can be very different at times, and debate still rages about which is inherently more secure -- a secret code kept by a company, or a public one that all eyes can see. Just as important is how each community reacts once a problem is spotted.. Code hunters are spotting with greater frequency defective coding that could open security holes in free and open source (FOSS) software. The Open Source Report 2008 and the Architecture Library Report, conducted by Coverity for the U.S. Department Homeland Security Cybersecurity Open Source Hardening Project, shows more than 10,000 defects fixed since project launch in March 2006. The link for this article located at Tech News World is no longer available. . Engineers ought to prioritize safety within open source applications, since vulnerabilities can lead to significant issues requiring collective vigilance.. Open Source Practices, Security Management, Code Defects. . LinuxSecurity.com Team
Serious security bugs in key parts of the latest Linux code have been fixed, but some small glitches have been introduced, according to a recent scan. In December, Coverity looked at version 2.6.9 of the Linux kernel, the heart of the open-source operating system, and found six critical defects in the core file system and networking code. In July, the code analysis company scanned the latest version of the Linux kernel, version 2.6.12, and found no such programming errors, Coverity CEO Seth Hallem said. . However, 1,008 defects were discovered in other parts of version 2.6.12. These coding problems, which could indicate security flaws, rest mainly in drivers, Hallem said. That's a slight increase compared with the earlier analysis, when 985 total defects were found, according to San Francisco-based Coverity. The link for this article located at ZDNet India is no longer available. . Latest assessments show that although essential flaws in the Linux kernel have been addressed, fresh issues have surfaced, leading to worries.. Linux Kernel Defects, Code Analysis, Open Source Security. . LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.