Full Disclosure mailing list archives

Re: OpenSSH - is X-Force really behind this?


From: Eric Rescorla <ekr () rtfm com>
Date: Mon, 29 Sep 2003 08:27:02 -0700

On Mon, 22 Sep 2003 Valdis.Kletnieks () vt edu wrote:

Charles Darwin and Alfred Wallace independently came up with
the concept of natural selection.

The cycle of a vulnerability from discovery to publication (or leak) is
probably around two weeks to one month on average, which is a fairly short
timeframe. Collissions have happened in the past for more trivial issues,
but this is not one of them - the vulnerability reported is a fairly
non-obvious and obscure problem.

Michael,

I was interested to hear you quote this statistic.
Do you have a reference for it that you can point
me to?

Thanks,
-Ekr

--
[Eric Rescorla                                   ekr () rtfm com]
                http://www.rtfm.com/

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.netsys.com/full-disclosure-charter.html


Current thread: