[sldev] Static code analysis

Jason Giglio gigstaggart at gmail.com
Sun Jan 11 17:57:17 PST 2009


Sheet Spotter wrote:
> I stumbled into a code analysis tool from Coverity that claims to
> identify source code flaws through an elaborate static code analysis
> with a lower “false positive” rate than similar tools. Coverity seems to
> offer their tool (or their services?) free of charge to open source
> projects.

I went through this a couple years ago.

The conclusion of the thread was that Linden Lab already licensed
Coverity internally, and they weren't going to release the results of
the report to us.  There were some vague excuses about security or
something, and that the open source community can't really help fix
those kinds of bugs anyway.

-------------- next part --------------
A non-text attachment was scrubbed...
Name: smime.p7s
Type: application/x-pkcs7-signature
Size: 3266 bytes
Desc: S/MIME Cryptographic Signature
Url : http://lists.secondlife.com/pipermail/sldev/attachments/20090111/a7d90517/smime.bin


More information about the SLDev mailing list