Skip site navigation (1)Skip section navigation (2)
Date:      Fri, 23 Dec 2011 10:30:09 -0700
From:      Shawn Webb <lattera@gmail.com>
To:        Damien Fleuriot <ml@my.gd>
Cc:        Joe Holden <lists@rewt.org.uk>, "freebsd-stable@freebsd.org" <freebsd-stable@freebsd.org>
Subject:   Re: Goo lists to subscribe to hear quickly about vulns ? ( was: Re: FLAME - security advisories on the 23rd ? uncool idea is uncool)
Message-ID:  <CADt0fhzcf_Lv0iQMtV3D5X-eFutvxPsOjFHq7QPvqeouxBKwhQ@mail.gmail.com>
In-Reply-To: <4EF4B9A4.8060405@my.gd>
References:  <4EF4A75C.2040609@my.gd> <4EF4B0B2.10709@rewt.org.uk> <4EF4B13E.2020109@my.gd> <CADt0fhxdHzHBK_T2Vh6-JEWF2eoC20rH0sAugW%2BK0gH2n5m0Hg@mail.gmail.com> <4EF4B9A4.8060405@my.gd>

next in thread | previous in thread | raw e-mail | index | archive | help
I usually hear about them from other people. I also subscribe to the
full-disclosure mailinglist.

On Fri, Dec 23, 2011 at 10:25 AM, Damien Fleuriot <ml@my.gd> wrote:
> On topic, where do you guys subscribe to know of these vulns ahead of
> their release on the ML ?
>
> I'm subscribed to the BIND ML but I don't recall seeing an advisory
> there ahead of today.
>
>
> On 12/23/11 6:03 PM, Shawn Webb wrote:
>> Some people (like me) already knew about the vulnerabilities. And
>> others are already exploiting some of these vulnerabilities.
>>
>> Thanks,
>>
>> Shawn Webb
>>
>> On Fri, Dec 23, 2011 at 9:50 AM, Damien Fleuriot <ml@my.gd> wrote:
>>> My point (which may or may not be valid) was that if the vulnerabilities
>>> remained *undisclosed*, they would have a much lower chance of being
>>> exploited.
>>>
>>>
>>>
>>> On 12/23/11 5:47 PM, Joe Holden wrote:
>>>> So don't update until Monday? The outcome will be the same :)
>>>>
>>>> Damien Fleuriot wrote:
>>>>> Hey up list,
>>>>>
>>>>>
>>>>>
>>>>> Look, just a rant here.
>>>>>
>>>>>
>>>>> Who in *HELL* thought it would be a cool idea to release no less than
>>>>> FOUR security advisories today ?
>>>>>
>>>>> I mean, couldn't this have waited and remained undisclosed until monday ?
>>>>>
>>>>> I for one do *NOT* relish the idea of updating 50+ boxes this evening
>>>>> and tomorrow !
>>>>>
>>>>>
>>>>> Not to mention a whole lot of merchants and banks have toggled IT Freeze
>>>>> a few weeks ago, to ensure xmas shopping doesn't get disturbed by
>>>>> production changes.
>>>>>
>>>>>
>>>>> Seriously, this is just irritating.
>>>>>
>>>>>
>>>>> /flame
>>>>> _______________________________________________
>>>>> freebsd-stable@freebsd.org mailing list
>>>>> http://lists.freebsd.org/mailman/listinfo/freebsd-stable
>>>>> To unsubscribe, send any mail to "freebsd-stable-unsubscribe@freebsd.org"
>>>>
>>> _______________________________________________
>>> freebsd-stable@freebsd.org mailing list
>>> http://lists.freebsd.org/mailman/listinfo/freebsd-stable
>>> To unsubscribe, send any mail to "freebsd-stable-unsubscribe@freebsd.org"



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?CADt0fhzcf_Lv0iQMtV3D5X-eFutvxPsOjFHq7QPvqeouxBKwhQ>