THREATOPS
THREAT OPSThreat News › Re: Removing dead code (was: Retrospective by 'gpg.fail' authors)

Re: Removing dead code (was: Retrospective by 'gpg.fail' authors)

lowoss_secPublished 2026-09-18

<p>Posted by Jacob Bachmeyer on Sep 17</p>I actually have a very rare counterexample to that, from DejaGnu.<br /> <br /> DejaGnu is a software testing framework, and more-or-less cannot have <br /> security issues by definition, as its purpose is to execute arbitrary <br /> code from trusted testsuites.  DejaGnu once &quot;had&quot; a feature that was <br /> supposed to catch tests that failed to

Original source: https://seclists.org/oss-sec/2026/q3/821