Full Disclosure mailing list archives

Re: Vulnerability response times -- MS and others


From: Valdis.Kletnieks () vt edu
Date: Wed, 07 Apr 2004 14:32:59 -0400

On Wed, 07 Apr 2004 11:34:34 CDT, hggdh <hggdh () comcast net>  said:

Anyways... the report seems to indicate that Microsoft is the fastest
on solving security issues.

Comments?

That's only because they smack down anybody who doesn't follow their style of
disclosure.  I'll bet if you recompute based on the time lag between when the
black hats first have a 0day and when the patch comes out, you'll find a far
different story.

Remember - CERT has taken a lot of heat over the years for delaying
announcements until patches are ready.  Microsoft is just doing more of the
same.

Attachment: _bin
Description:


Current thread: