Look at it this way. If it was closed source, the fix would take longer, and the realization may have never come.
Honestly, seems like we are forgetting our roots on this. Dump it? Yeah and throw out years of stability and bug fixes. No thanks!
Honestly, seems like we are forgetting our roots on this. Dump it? Yeah and throw out years of stability and bug fixes. No thanks!
https://groups.google.com/forum/#!searchin/golang-nuts/opens...
In light of the current issue I looks like the D guys did the right thing.
TCP can be exploited, it doesn't mean we ditch TCP for another differently exploitable solution.
I see your point but I don't think of OpenSSL as monoculture the same way that Windows or OSX are.