Fuzzing

Fuzzing tool zuuf used on Strigi

I just learnt that Jos van den Oever has been applying the fuzzing tool zuuf to his software Strigi(*). This is excellent news as a full text indexer has to process lots of different types of files, and some of them may come from unknown/untrusted origins, for example email attachments. Spending some extra effort into making indexing rock-solid will hopefully help avoid exploits via the indexing daemon.

Inhalt abgleichen