LWN.net Logo

what security fix?

what security fix?

Posted Nov 10, 2008 7:21 UTC (Mon) by nix (subscriber, #2304)
In reply to: what security fix? by qg6te2
Parent article: Stable kernel 2.6.27.5

My understanding was more 'once a bug has a CVE number, really annoying
embargo rules come into play, with the result that many people would
rather rip off their own legs than try to get a CVE number assigned'.


(Log in to post comments)

what security fix?

Posted Nov 10, 2008 8:12 UTC (Mon) by PaXTeam (subscriber, #24616) [Link]

asking for a CVE is independent of asking for an embargo. one does the latter out of courtesy to distros or to please the corporate bosses (say, if one's employed by one of the commercial distros), but otherwise there's nothing that would force anyone to observe any embargo. so yes, those arguments have always been bogus too.

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds