Skip site navigation (1)Skip section navigation (2)
Date:      Sun, 3 May 1998 18:18:04 -0300 (ARST)
From:      "Fernando P. Schapachnik" <fpscha@localhost.schapachnik.com.ar>
To:        freebsd-security@FreeBSD.ORG
Subject:   Why aren't security fixes posted to security-announce?
Message-ID:  <199805032118.SAA00317@localhost.schapachnik.com.ar>

next in thread | raw e-mail | index | archive | help
*** A similar message has already been posted some days before. As I 
didn't received it, I assume nobody has. Sorry if this is not the case. ***

Hello:
	I like to know if there is a good reason for not posting to 
announce or security-announce those bugs/fixes mailed to security.

	I'm not talking about open issues that may help an attacker, but 
about those which has a fix or workaround. In this situation we can find 
Niall Smart's "Vulnerability in OpenBSD, FreeBSD-stable lprm", Dima 
Ruban's patch to BIND related with "Re: Any news on this?: CA-98.05 
Multiple Vulnerabilities in BIND" and Vasim Valejev's "Example of 
RFC-1644 attack", just to quote a few I received in the past few weeks.

	Thanks and regards.

Fernando P. Schapachnik
fpscha@schapachnik.com.ar


To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe security" in the body of the message



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?199805032118.SAA00317>