A company relies on open-source software libraries to build the software used by its customers. Which of the following vulnerability types would be the most difficult to remediate due to the company’s reliance on open-source libraries?
The correct answer is:
D. Zero-day
Explanation:
Zero-day vulnerabilities are the most difficult to remediate because they are unknown to the software vendor or the open-source community at the time of exploitation. Since the company relies on open-source libraries, it may not have control over the discovery or patching of such vulnerabilities. Remediation often depends on the open-source community or third-party maintainers to identify and fix the issue, which can take time.
Buffer overflow (A), SQL injection (B), and Cross-site scripting (C) are well-known vulnerability types with established remediation practices. These can typically be addressed through code reviews, secure coding practices, and applying patches or updates provided by the open-source community.
Thus, zero-day vulnerabilities pose the greatest challenge due to their unpredictable nature and reliance on external parties for fixes.
The correct answer is D. Zero-day.
A zero-day vulnerability refers to a security flaw that is unknown to the software's creators or the public and has no available patch. Since the company relies on open-source software libraries, a zero-day in one of those libraries would be especially difficult to remediate because the company may need to wait for the open-source community or maintainers to discover and fix the vulnerability.
upvoted 2 times
...
This section is not available anymore. Please use the main Exam Page.SY0-701 Exam Questions
Log in to ExamTopics
Sign in:
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.
Upvoting a comment with a selected answer will also increase the vote count towards that answer by one.
So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
Anyio
3 months ago1eccfc0
3 months ago