Re: Adding Flawfinder to Patchwatcher

2008-09-07 Thread Jason Spiro
Rob Shearman gmail.com> wrote: > Coverity and Prefast are both static analysis tools with a bit more > intelligence that identify bad code rather than just using "bad" > functions. I'm pretty sure Coverity's tool, Prevent, costs money to buy. IIRC if the maintainers of an OSS project ask them to

Re: 1st resend: Can we import MSConfig from ReactOS? (was: autorun perhaps dangerous)

2008-09-07 Thread Jason Spiro
I wrote: > [...] msconfig is a simple GUI utility for changing certain Registry > settings like AutoRun items and such. I used the wrong terminology when I said "AutoRun items". I should've said "startup items", i.e. HKLM\Software\Microsoft\Windows\CurrentVersion\Run items and other startup items

Re: 1st resend: Can we import MSConfig from ReactOS? (was: autorun perhaps dangerous)

2008-09-05 Thread Jason Spiro
Or a whitelist of trusted portions of ReactOS, such as msconfig[1] that are extremely unlikely to have been written using reverse engineering? ^ [1]. msconfig is a simple GUI utility for changing certain Registry settings like AutoRun items and such. -- Jason Spiro: software/web developer, tra

1st resend: Can we import MSConfig from ReactOS? (was: autorun perhaps dangerous)

2008-09-05 Thread Jason Spiro
dwards wondered[1] if you would let Wine import "msconfig" (the System Configuration Utility) from ROS. Would you allow it? Thanks, --Jason Spiro (not a Wine developer) ^ [1]. http://news.gmane.org/find-root.php?message_id=%3c19e31a080801122302u52d51353w1b2875f5c30582ff%40mail.gmail.co