oss-sec mailing list archives

Re: Vendor-sec hosting and future of closed lists


From: Matthieu Herrb <matthieu.herrb () laas fr>
Date: Sun, 6 Mar 2011 09:24:26 +0100

On Fri, Mar 04, 2011 at 01:49:20AM +0300, Solar Designer wrote:

As to projects such as, say, Samba and X.org, I'd exclude them.
There's no difficulty for a researcher to notify one of these directly,
and there's not much difficulty in CC'ing the proper one of these on a
discussion.

I think that as far as X.Org is concerned, we're ok with that.
There are already security people from Linux distributions subscribed
to  the xorg-security@ list and they also have access to restricted
'security' bugs in bugzilla. 

-- 
Matthieu Herrb


Current thread: