Here's a thought... how about they just go back to basics and check the actual code for potential overflows?? Rather than designing in security, this just sounds like another after-the-fact patch job. Granted a rather interesting patch...

alpha