exam questions

Exam PT1-002 All Questions

View all questions & answers for the PT1-002 exam

Exam PT1-002 topic 1 question 26 discussion

Actual exam question from CompTIA's PT1-002
Question #: 26
Topic #: 1
[All PT1-002 Questions]

Which of the following describe the GREATEST concerns about using third-party open-source libraries in application code? (Choose two.)

  • A. The libraries may be vulnerable
  • B. The licensing of software is ambiguous
  • C. The libraries' code bases could be read by anyone
  • D. The provenance of code is unknown
  • E. The libraries may be unsupported
  • F. The libraries may break the application
Show Suggested Answer Hide Answer
Suggested Answer: AC 🗳️
Reference:
https://www.infosecurity-magazine.com/opinions/third-party-libraries-the-swiss/

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
isaphiltrick
1 year, 8 months ago
I'm sure A & E are correct. Remember the question is asking about the GREATEST concerns about open source libraries...I agree that libraries may be vulnerable (A) and although many open source projects are generally supported by communities, some libraries MAY be unsupported (E). So what if the libraries' code bases could be read by anyone? This is open source code we're talking about so why would it be a concern?
upvoted 1 times
...
BinarySoldier
3 years, 5 months ago
A and C are correct.
upvoted 4 times
...
DohJayVeh
3 years, 7 months ago
the codebase is a collection library's that can be looked up in the source control repository. This makes it easy to look up and easy to find flaws with
upvoted 2 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago