November is officially renamed as "tick off Dave Jones"...

Jesse Keating jkeating at redhat.com
Thu Nov 2 04:30:01 UTC 2006


On Wednesday 01 November 2006 23:23, Peter Gordon wrote:
> I, for one, think that this is a great idea. Finding and fixing bugs in
> something as critical as the kernel (especially the filesystem code as I
> understand their page) is a definite plus.

Finding the bugs is great, however reporting security flaws to vendor-sec and 
allowing vendors to coordinate in releasing the right fix at the same time is 
better for the end users and community.  Just dumping a new vulnerability a 
day to public space is just creating chaos.  Vendors will scramble to fix the 
flaw, different patches will be used, updates will be rushed out, etc...

-- 
Jesse Keating
Release Engineer: Fedora
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 189 bytes
Desc: not available
URL: <http://listman.redhat.com/archives/fedora-test-list/attachments/20061101/960a2a97/attachment.sig>


More information about the fedora-test-list mailing list