lists.openwall.net | lists / announce owl-users owl-dev john-users john-dev passwdqc-users yescrypt popa3d-users / oss-security kernel-hardening musl sabotage tlsify passwords / crypt-dev xvendor / Bugtraq Full-Disclosure linux-kernel linux-netdev linux-ext4 linux-hardening linux-cve-announce PHC | |
Open Source and information security mailing list archives
| ||
|
Message-ID: <200405262248.57349.capegeo@opengroup.org> From: capegeo at opengroup.org (George Capehart) Subject: Vendor casual towards vulnerability found in product On Wednesday 26 May 2004 10:52 am, morning_wood wrote: <snip> > > some disclosure policys can be found at.. > > http://oisafety.org/ > http://oisafety.org/process.html > > http://exploitlabs.com/disclosure-policy.html > http://www.cert.org/kb/vul_disclosure.html > http://www.atstake.com/research/policy/ > http://www.hut.fi/~tianyuan/slides/template/template.html see also the granddaddy of disclosure policies: http://www.wiretrip.net/rfp/policy.html /g -- George Capehart capegeo at opengroup dot org PGP Key ID: 0x63F0F642 available on most public key servers "It is always possible to agglutenate multiple separate problems into a single complex interdependent solution. In most cases this is a bad idea." -- RFC 1925