• iAvicenna@lemmy.world
    link
    fedilink
    arrow-up
    6
    ·
    edit-2
    2 months ago

    I am also curious how much of those “%70 of the vulnerabilities” would be detected by tools like valgrind, CPPcheck etc (either directly in the former case or indirectly in the latter). If a major part, then the main problem is people not incentivized to / not having enough time to use these tools.

    • hector
      link
      fedilink
      arrow-up
      2
      ·
      edit-2
      2 months ago

      Valgrind is pretty crazy to find bugs and memory leaks !