(Small) software that needs code audit

Hans de Goede j.w.r.degoede at hhs.nl
Tue May 30 11:23:55 UTC 2006


Hi,

As some of you already know I'm a computer science teacher at a Dutch
university. Currently I'm giving a course about security.

For my next practical lesson I want my students todo an audit of a small
piece of C-code. Nothing fancy really just looking for sprintf instead
of snprintf, gets instead of fgets, etc. And formatstring vulnerabilities.

Does anyone know of some (small!) piece of software in Fedora (Extras)
that could benefit from this?

And are there any other simple checks my students could do?

Any findings will of course be published.

Thanks & Regards,

Hans




More information about the Fedora-security-list mailing list