Follow @Openwall on Twitter for new release announcements and other news
[<prev] [next>] [<thread-prev] [thread-next>] [day] [month] [year] [list]
Date: Wed, 27 Feb 2013 15:17:46 -0800
From: Daniel Kahn Gillmor <dkg@...thhorseman.net>
To: oss-security@...ts.openwall.com
CC: "Jason A. Donenfeld" <Jason@...c4.com>
Subject: Re: CVE request - Linux kernel: VFAT slab-based buffer
 overflow

On 02/27/2013 03:00 PM, Jason A. Donenfeld wrote:
> it takes your brain less than a single cycle to realize this or
> that memory corruption can lead to priv escalation. 

Even if this were true, it takes much more than a single cycle to write
up a decent security report that can be understood by other people.
Communication takes time and effort.  Good communication takes even more
time and effort.

I want this work to happen as much as you do, but it doesn't help to
trivialize the work you are asking others to do.

	--dkg


Download attachment "signature.asc" of type "application/pgp-signature" (1028 bytes)

Powered by blists - more mailing lists

Please check out the Open Source Software Security Wiki, which is counterpart to this mailing list.

Confused about mailing lists and their use? Read about mailing lists on Wikipedia and check out these guidelines on proper formatting of your messages.