oss-sec mailing list archives

Re: Re: CVE Request -- Four flaws in WiMAX (afaik upstream is dead for this)


From: Jan Lieskovsky <jlieskov () redhat com>
Date: Thu, 8 Aug 2013 13:28:59 -0400 (EDT)


On Thu, Aug 08, 2013 at 12:10:21PM -0500, Dan Williams wrote:
There don't have to be public bugs yet, but if nobody writes patches in
a reasonable amount of time perhaps they should just be made public.

They are public already:
http://www.openwall.com/lists/oss-security/2013/08/08/10

Yes, made them public. As can be seen in timestamp for Red Hat bugs,
original notes have been added by Florian pretty long time ago (but
still within this year, so 2013 ones should be applied).


This is probably for the best, sounds like anyone reliant upon this code
would be wise to re-write much of it anyway...

Since these did not seem to follow some progress, made them public
(so people would at least know about the issues and could deprecate / obsolete
the package or look for other ways of solution).

Thank you && Regards, Jan.
--
Jan iankko Lieskovsky / Red Hat Security Response Team


Thanks



Current thread: