points by viraptor 20 hours ago

That's an issue in the other code, not in the addition service. It would be lumped together if it was an addition function close to the other code. But I wrote service there on purpose.

someonebaggy 19 hours ago

Why couldn't a crash caused by filesystem corruption caused by a + operator that says 1+1=3 be filed as a DoS?

  • tsimionescu 16 hours ago

    It could. But it's a CVE in the system that crashed or in the filesystem, not in the calculator web service that we were discussing. If a filesystem decides to use a bad online calculator for its internal logic, that's a vulnerability on the filesystem, not the calculator.

    • asdfaoeu 14 hours ago

      We aren't talking about a calculator web service though we are talking about the Linux kernel and if there's a bug in the kernel that could conceivably cause a crash in an otherwise correctly written application then that would be a CVE in the kernel.