Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs
Save the Net, Sue a Software Maker
David Banisar, 2001-12-17

Safety standards and civil liability made automobiles safe. It can work for software too.

Comments Mode:
Save the Net, Sue a Software Maker 2001-12-17
Sean, bremerton Wa (4 replies)
Re: Sean 2002-01-06
guest@netpixies.net
The scenario you paint for us would not happen, for reasons
more related to law than software.

1) The bugs you mention in sendmail and Sun sadmind were
years ago, and time to file suit has run out. In addition,
Solaris has had stack protection since version 2.6, and
sendmail is open source. A legal concept called "failure
to mitigate damages" applies to people who do things like
crash their car while leaving their seatbelt off. The
result is that they win their lawsuit but receive very
little in damage awards. If you *could* still sue Sun or
sendmail, you would be asked "Why didn't you use stack
protection/read the source code yourself?" And you would
probably end up winning $1 in damages.

2) No lawyer will sue someone who has no money, so OpenSSH
is safe. And, again, "Why didn't you read the source code?"

So, you kind of have it backwards. The only ones who would
be very threatened by litigation would be wealthy companies
who sell seriously defective, closed-source software. Such
companies would probably face a lot of big class-action
suits. About damn time if you ask me.

[ reply ]

Link to this comment: http://www.securityfocus.com/comments/columns/47/9691#9691
Save the Net, Sue a Software Maker 2002-01-12
An old codger that used to be proud of his profession.
Save the Net, Sue a Software Maker 2001-12-17
System High
Save the Net, Sue a Software Maker 2001-12-17
Jesse (1 replies)
Save the Net, Sue a Software Maker 2001-12-17
philw (1 replies)
Save the Net, Sue a Software Maker 2001-12-18
Anonymous (1 replies)
Save the Net, Sue a Software Maker 2001-12-18
Robert A. Matern (3 replies)
Save the Net, Sue a Software Maker 2001-12-18
Brad Freeman
Save the Net, Sue a Software Maker 2001-12-18
kbrown@nospam.com (2 replies)
Save the Net, Sue a Software Maker 2001-12-19
Robert A. Matern
Save the Net, Sue a Software Maker 2001-12-18
theX (2 replies)
Save the Net, Sue a Software Maker 2001-12-19
Robert A. Matern
Save the Net, Sue a Software Maker 2001-12-18
Anonymous (1 replies)
Save the Net, Sue a Software Maker 2001-12-19
Bill reilly
Save the Net, Sue a Software Maker 2001-12-18
Anonymous (1 replies)
Save the Net, Sue a columnist 2001-12-19
Anonymous (1 replies)
Save the Net, Sue a columnist 2001-12-20
Anonymous (1 replies)
Save the Net, Sue a columnist 2001-12-31
Annoyed Reader
Save the Net, Sue a Software Maker 2001-12-19
I Speak from Experience
Save the Net, Sue a Software Maker 2001-12-19
Rob John (1 replies)
Legal Clarifications... 2001-12-19
BillReilly
Sue Tim Burners Lee 2001-12-21
Anonymous
OS and App tools NOT ready for Prime time= lawsuit city! 2001-12-21
we are years away from having tools that coders can use safely (ex: SELinux and CycloneC)! (1 replies)
Save the Net, Sue a Software Maker 2001-12-29
Anonymous (1 replies)
Save the Net, Sue a Software Maker 2001-12-30
Sean Ackley <securityfocus@ackind.net>
Sue them ALL!!! 2001-12-31
JeffM (1 replies)
Get a brain... 2002-01-04
Matt Hargraves
Save the Net, Sue a Software Maker 2002-01-11
Blacksheep







 

Privacy Statement
Copyright 2009, SecurityFocus