Follow @Openwall on Twitter for new release announcements and other news
[<prev] [next>] [<thread-prev] [thread-next>] [day] [month] [year] [list]
Message-ID: <20110306082425.GA16673@bluenote.herrb.net>
Date: Sun, 6 Mar 2011 09:24:26 +0100
From: Matthieu Herrb <matthieu.herrb@...s.fr>
To: oss-security@...ts.openwall.com
Subject: Re: Vendor-sec hosting and future of closed lists

On Fri, Mar 04, 2011 at 01:49:20AM +0300, Solar Designer wrote:
> 
> As to projects such as, say, Samba and X.org, I'd exclude them.
> There's no difficulty for a researcher to notify one of these directly,
> and there's not much difficulty in CC'ing the proper one of these on a
> discussion.

I think that as far as X.Org is concerned, we're ok with that.
There are already security people from Linux distributions subscribed
to  the xorg-security@ list and they also have access to restricted
'security' bugs in bugzilla. 

-- 
Matthieu Herrb

Powered by blists - more mailing lists

Please check out the Open Source Software Security Wiki, which is counterpart to this mailing list.

Confused about mailing lists and their use? Read about mailing lists on Wikipedia and check out these guidelines on proper formatting of your messages.