Openwall GNU/*/Linux - a small security-enhanced Linux distro for servers
[<prev] [next>] [<thread-prev] [thread-next>] [day] [month] [year] [list]
Date: Fri, 19 Jan 2018 14:58:37 +0100
From: Greg KH <greg@...ah.com>
To: oss-security@...ts.openwall.com
Subject: Re: How to deal with reporters who don't want their
 bugs fixed?

On Fri, Jan 19, 2018 at 05:22:58AM -0800, i@...udlinux.com wrote:
> We have seen "semi-public" with Meltdown -- I think it was dreadful. I
> would prefer private to "semi-public" any day.

Meltdown was not semi-public, it was private and siloed and a whole
bunch of other horrible things.  If it were semi-public, we would have
had it fixed sooner :)

And yes, a number of us involved are probably going to be writing up a
post-mortum of that whole horrid affair, feel free to let me know if
anyone wants to help out with it.  I think it's a great example of what
not to ever do in the future...

thanks,

greg k-h

Powered by blists - more mailing lists

Your e-mail address:

Please check out the Open Source Software Security Wiki, which is counterpart to this mailing list.

Powered by Openwall GNU/*/Linux - Powered by OpenVZ