Skip to content

Comment on Bringing Memory Safety to sudo and suparent

Comments

Rust has a lot of unsafeties. First their stdlib is mostly unsafe. Also their varargs may overflow. That's why they have tons of stack overflow bugs in their issues. They use unbounded stack allocation, alloca is nice but dangerous. To overcome their segvs they just lie and signal sigabrt instead. They cannot free cycles. They need to use mutexes for concurrency, which is a big no-no, deadlocking. Their FFI is unsafer than lisp ffi's. I don't see a safe of dialect of rust, you could trust. Their new safe pragma doesn't help with all of these. There also tons of CVE's.

AboutSource Built by g1lg1l

Hackerly is an independent reader for Hacker News, built on the public HN API. Not affiliated with Y Combinator.