Hacker News new | ask | show | jobs
by Beldur 2541 days ago
There's a proverb for the Go programming language which says: ,,A little copying is better than a little dependency."
1 comments

> In the first version of the software, there were 70 full copies of 4 different OpenSSL versions, ranging from 0.9.8 to 1.0.2k (including one from a vendor SDK) with partial copies of 14 versions, ranging from 0.9.7d to 1.0.2k, those partial copies numbering 304. Fragments of 10 versions, ranging from 0.9.6 to 1.0.2k, were also found across the codebase, with these normally being small sets of files that had been copied to import some particular functionality.

https://www.theregister.co.uk/2019/03/28/hcsec_huawei_oversi...