|
|
|
|
|
by joshstrange
4439 days ago
|
|
Which might be true but seems odd to bring up in the blog post. Also they say: >> Many kinds of browser security bugs, such as the recent Heartbleed vulnerability, are prevented automatically by the Rust compiler. Are they referencing reverse heartbleed here? Browsers themselves were not vulnerable to heartbleed, I don't even this they were vulnerable to reverse heartbleed. There is no way Servo would have prevented the heartbleed bug, no browser could have, I feel like that sentence has no place in this blog post. |
|
The point I was trying to make is that you can't make that kind of mistake in the safe Rust language. You will fail a bounds check even if you decide to trust client provided lengths.