Bugtraq mailing list archives

Re: Advisory:Multiple Vulnerabilities in ZoneAlarm


From: "Stephen M. Milton" <milton () ISOMEDIA COM>
Date: Wed, 27 Dec 2000 10:30:21 -0800

Whereas I agree it would be desirable for ZoneLabs to fix any notified
vulnerabilities, I share the view that in terms of RISK the issue is of
limited importance until an exploit can be devised that can take advantage
of the theoretical weakness.

This is a terrible idea.  The concept that a bug should not be fixed until
AFTER an exploit has been found and demonstrated is ludicrous.  Security
bugs are especially important to fix BEFORE the exploit has been created.

2cents.

Stephen Milton
Vice President
ISOMEDIA, Inc.


Current thread: