Nmap Security Scanner
*Intro
*Ref Guide
*Install Guide
*Download
*Changelog
*Book
*Docs
Security Lists
*Nmap Hackers
*Nmap Dev
*Bugtraq
*Full Disclosure
*Pen Test
*Basics
*More
Security Tools
*Pass crackers
*Sniffers
*Vuln Scanners
*Web scanners
*Wireless
*Exploitation
*Packet crafters
*More
Site News
Site Search:
Exploit World
Advertising
About/Contact
Credits
Sponsors:
edgeos



Bugtraq: Re: CERT Vendor-Initiated Bulletin VB-98.04 - xterm.Xaw

Re: CERT Vendor-Initiated Bulletin VB-98.04 - xterm.Xaw

From: Alan Cox <alan_at_LXORGUK.UKUU.ORG.UK>
Date: Fri, 1 May 1998 17:44:05 +0100

> impression that with the decision to make X commercial, they disavowed
> older versions of X. Security and patches for older versions of X
> should now fall into the responsibility to those parties who maintain
> them.

Indeed - which means they lied to CERT when they told CERT everyone
affected had the patches or CERT screwed up in releasing the report.

If CERT were working by their own (at times ridiculous) rules they would
have informed XFree86 and sat on the announcement until they had patches.

Maybe the CERT guys would like to tell bugtraq what happened ?

Alan
Received on May 01 1998

[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]
edgeos