Vulnerability Development mailing list archives

Re: Generalized List of Threats and Vulnerabilities


From: jduksta () BBN COM (John Duksta)
Date: Fri, 21 Jan 2000 14:13:21 -0500


Hmmmm... not sure what you mean by generalized. If by that you
mean a discussion of types of common vulnerabilities such as
buffer overflows, IP Stack issues, application issues, etc,
I don't have a good pointer.

However, there is a good effort to catalog all vulnerabities
going on at http://cve.mitre.org

-john

Dave Drake wrote:

Does anyone know a good URL for a discussion that speaks toThreats and
Vulnerabilities in a generalized fashion.  I am building a device and wish to
discuss it in a Concept of Operations document with respect to how it stacks up
against a generalized type list.
Thx in advance,
Dave Ducke

--
=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=
John C.C. Duksta, CISSP                               jduksta () bbn com
Systems Engineer                                  phone: 781-262-4277
GTE Internetworking                                 fax: 781-998-1339



Current thread: