xania
xania copied to clipboard
Security "audit"
A number of areas of code are the worst kind of C, and likely suffer from buffer overruns (I have an email containing some issues, obviously not putting here).
Thoughts:
- TESTS!
- Fuzzing doorman and the Xania-side client input handling
- Running with the address sanitizer on (why not? machine's fast enough!)