OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
Subject: Re: Two kinds of advisories?
From: Robert Watson (rwatsonFreeBSD.org)
Date: Thu Jul 13 2000 - 22:57:51 CDT


On Thu, 13 Jul 2000, Kris Kennaway wrote:

> This is already apparent from the "FreeBSD only: NO" in most of the 33
> advisories this year, but it's not professional to name the other
> platforms explicitly (besides the fact that we can't always be sure, as I
> learned once the hard way when I overestimated the severity of a NetBSD
> vulnerability).

Absolutely. I see anything other than a claim about it being specific to
us as being unprofessional. I've seen some other advisories from other
groups that rashly claim things like, ``Affects all other UNIX operating
systems,'' which is almost always false :-). The best we can do is
declare whether or not we believe there is the potential for affecting
other operating systems or not, and accept that the bug affects us.

  Robert N M Watson

robertfledge.watson.org http://www.watson.org/~robert/
PGP key fingerprint: AF B5 5F FF A6 4A 79 37 ED 5F 55 E9 58 04 6A B1
TIS Labs at Network Associates, Safeport Network Services

To Unsubscribe: send mail to majordomoFreeBSD.org
with "unsubscribe freebsd-security" in the body of the message