ISC2 CISSP Practice Question
Which of the following represents the MOST significant security risk when using pre-built software libraries in an application?
Lack of control over the library's update and patch release cycle
Inability to validate the cryptographic implementation within closed-source libraries
Possible inclusion of covert channels or backdoors in third-party code
Dependency on vulnerabilities in the library that could affect the application