Show newer

CW: PHP language 

I was reminded that PHP is still the only programming language in which a version deployed into production gave "Hello, world!" at least one RCE vulnerability. The one I have in my notes is CVE-2012-1823.

I'm not the only one who uses and customizes xterm. I am absolutely delighted. :3

After hand-patching and creating a new diff comes getting it to compile in clang.

Because absolutely NOTHING I do to the Imakefile is creating Makefiles with "CC = gcc" in them. No matter what, they're all "CC = cc", which is clang's C compiler.

Show thread

The patch file is a unified diff that contains at least one unified diff nested within.

I sure hope patch processes files in lines from first to last, because that's how I'm making and skipping the hand-editing. :/

Show thread

be sure to check your genderfluid regularly and change if needed to avoid build-up of toxic masculinity

WPA2, nonce, lewd 

If we're going to reuse nonces in WPA2, then we need a way to better verify their integrity. Thankfully, my favorite rag, Hacking Gibsons, was on it four years ago. :V
computerfairi.es/media/UkWau8O

xcalpr.c:89:21: error: initializer element is not constant
static FILE *fout = stdout;

Everything I'm reading says that hasn't been valid C since before ANSI standardization way back in the '80s.

Show thread

Oh, duh. The Debian package page has a diff file downloaded separately, and some of them are patches to the C files fixing the compiler error I'm getting. Guess I should read it, edit the source, and re-diff them.

The latest date in xcal's CHANGES file is 1995-09-13.

Show thread

a mediocre coder who writes well is twice as valuable and ten times as teachable as a great coder who can't string words together

Show thread

computer science programs should spend a LOT more time and effort teaching students how to do effective technical writing

Programming which requires cussing: 

If a native HDBF VM exists and GCC is ported to it, then it's all over.

Chromium on Wayland on Linux on Brainfuck.

Show thread

Programming which requires cussing: 

HDBF, Hyper-Dimensional Brainfuck: github.com/Property404/hdbf

... I'm afraid to write hello-world in it.

"You fired you top talent. I hope you're happy.": medium.com/@deusexmachina667/y

Note: I disable JavaScript just about everywhere, and since Medium uses JS instead of HTML to embed images, that means I haven't seen any in the story.

As #OpenBSD's de-facto wifi maintainer, I first learned about this WPA problem in June. A simple patch was provided which I could commit with slight modifications.

The original embargo was already 2 months long, and then extended again for 2 months.

The generall public (you) were left in the dark about this for at least 4 months.

This is a very sad state of affairs. It takes the industry much too long to apply a simple patch.

Show older
Computer Fairies

Computer Fairies is a Mastodon instance that aims to be as queer, friendly and furry as possible. We welcome all kinds of computer fairies!