3 ms·
From the chromium website > Around 70% of our high severity security bugs are memory unsafety problems (that is, mistakes with C/C++ pointers). Half of those a
by dist1ll 2y ago
From the chromium website
> Around 70% of our high severity security bugs are memory unsafety problems (that is, mistakes with C/C++ pointers). Half of those are use-after-free bugs.
https://www.chromium.org/Home/chromium-security/memory-safety/ https://www.chromium.org/Home/chromium-security/memory-safet...
- rvz 2y agoI mean, it doesn't get any more clearer that the Chromium team is already considering integrating Rust in Chromium to mitigate these sort of memory corruption vulnerabilities found in C and C++ and that is the main motivation here. [0] Given that Ladybird is yet another C/C++ browser, it will be riddled with these vulnerabilities waiting to be exploited. I don't think many here are thinking about the costs involved with security fixes and maintenance, at it is in the hundreds of millions of dollars a year just to keep up with Firefox alone. That is the minimum requirement for any serious competing browser. There's a clear reason why Chrome, Safari and Firefox need hundreds of millions of dollars of developer maintenance a year. [0] https://chromium.googlesource.com/chromium/src/+/refs/heads/main/docs/rust.md#why https://chromium.googlesource.com/chromium/src/+/refs/heads/...