Earlier quoted context omitted.
On the one hand, if this had been in Windows, no one in the public would have been able to stumble across it, though you would expect them to be paying rooms full of engineers to make sure that's never necessary (and yet stuff happens.) On the other hand, despite the premise of open source that 'many eyes make all bugs shallow', the amount of code in the wild and the complexity of it (and the diversity of implementat…
Considering most exploits are found via fuzzing tools, I think your assumption is pretty far away from reality. If people could casually look at code and see vulnerabilities, then we wouldn't have any. Also: MS Shared Source initiative
Although your point about the methods of exploits changing the dynamic is valid.
>Also: MS Shared Source initiative
Fair point.