Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs
Microsoft miffed at Bulgarian bug buster
John Leyden, The Register 2001-01-19

Redmond says hasty disclosure, not buggy software, puts customers at risk.

Comments Mode:
Microsoft Patch Quality 2001-01-19
Nick
I wasn't aware that Microsoft has ever produced a high-quality software patch. Why should they worry now?...

[ more ]  [ reply ]
Georgi also works for Netscape 2001-01-19
Anonymous
You also forgot to mention that Georgi Guninski is currently under contract with Netscape/AOL. Interesting that no Netscape/AOL bugs have come out of him since......

IMHO: Georgi is very irresponsible....

[ more ]  [ reply ]
getting Microsoft to respond 2001-01-20
tlk (at) irt (dot) net [email concealed] (1 replies)
Many times publishing the hole is the only way to get MS to respond. BugTraq has examples of "I informed MS two weeks ago, but haven't

received any response from them".

MS's licensing holds the end-user responsible for the use of its product

but we have not method of holding MS resonsible for ...

[ more ]  [ reply ]
getting Microsoft to respond 2001-01-21
anonymous
<Many times publishing the hole is the only way to get MS <to respond. BugTraq has examples of "I informed MS two <weeks received any response from them".

have you mailed them hole-reports? has others mailed to right address?

personally, all my reports have been handled in days. first replies have...

[ more ]  [ reply ]
RFPolicy 2001-01-21
black-hand
if we go by RFPolicy (which I consider to be reasonable)

http://www.wiretrip.net/rfp/policy.html

"B. The MAINTAINER is to be given 5 working days (in respects to the ORIGINATOR) from the DATE OF CONTACT; should no contact occur by the end of 5 working days, the ORIGINATOR should disclose the I...

[ more ]  [ reply ]
RFPolicy 2001-01-21
black-hand
from RFPolicy (http://www.wiretrip.net/rfp/policy.html):

"B. The MAINTAINER is to be given 5 working days (in respects to the ORIGINATOR) from the DATE OF CONTACT; should no contact occur by the end of 5 working days, the ORIGINATOR should disclose the ISSUE."

the advisory (http://www.guninski...

[ more ]  [ reply ]







 

Privacy Statement
Copyright 2009, SecurityFocus