14 Jul
2017
14 Jul
'17
2:22 p.m.
On Fri, Jul 14, 2017 at 12:30:56PM +0300, Georgi Guninski wrote:
What is an estimate for the total number of exploitable bugs in large linux distro?
Bugs that already have some PoC or other code to exploit the issue? Or the sum total of all exploitable bugs, discovered and undiscovered? The first case should be relatively small with a very current release.. the second case obviously could be different.
Also, does the total number decrease, increase or change in other way over time?
Without patching, discovered bugs will increase over time. The actual number of bugs stays the same of course (again, without patching). Obviously you're a fool if you don't maintain your software...