oss-sec mailing list archives
Re: CVE Requests
From: Solar Designer <solar () openwall com>
Date: Fri, 16 Mar 2012 19:53:19 +0400
On Fri, Mar 16, 2012 at 12:20:37AM -0400, Mark Stanislav wrote:
None of the details of these issues have been publicly discussed or released as I am trying (without much success) to allocate a CVE prior to sending out a coordinated advisory including that identifier as I always have done and as the mitre site indicates to do. There are no reference links to provide and I am not publicizing details on this list before the developer can be informed of the CVE. I'm happy to take this off list as I am sure no one cares about any of this discussion
No, please keep this on the list. Discussions on how to handle vulnerability disclosure (including the CVE ID assignment step) are definitely on topic for oss-security. Thanks, Alexander (a moderator for oss-security)
Current thread:
- CVE Requests Mark Stanislav (Mar 15)
- Re: CVE Requests Kurt Seifried (Mar 15)
- Re: CVE Requests Mark Stanislav (Mar 15)
- Re: CVE Requests Kurt Seifried (Mar 15)
- Re: CVE Requests Mark Stanislav (Mar 15)
- Re: CVE Requests Kurt Seifried (Mar 15)
- Re: CVE Requests Mark Stanislav (Mar 15)
- Re: CVE Requests Solar Designer (Mar 16)
- Re: CVE Requests Kurt Seifried (Mar 16)
- Re: CVE Requests Mark Stanislav (Mar 16)
- Re: CVE Requests Kurt Seifried (Mar 16)
- Re: CVE Requests Mark Stanislav (Mar 15)
- Re: CVE Requests Kurt Seifried (Mar 15)
- Re: CVE Requests Andreas Ericsson (Mar 16)
- Re: CVE Requests Adam D. Barratt (Mar 16)
- Re: CVE Requests Mark Stanislav (Mar 16)
- Re: CVE Requests Tim Brown (Mar 16)
- Re: CVE Requests Mark Stanislav (Mar 16)
- Re: CVE Requests Kurt Seifried (Mar 16)
- Re: CVE Requests Tim Brown (Mar 16)