Long-lived security holes
Posted Jun 24, 2004 9:31 UTC (Thu) by
mjr (subscriber, #6979)
In reply to:
Long-lived security holes by wichert
Parent article:
Long-lived security holes
Hmm; I'd think that something like the following (relatively objective) criteria would be helpful, if not perfect:
- Remote code execution with root priviledges
- Remote code execution with other priviledges
- Remote code execution, user action required¹
- Local priviledge escalation to root
- Local priviledge escalation, other
- Remote DOS, whole system
- Remote DOS, single service
- Local DOS, whole system
- Local DOS, single service
¹ Such as using a buggy program to view malicious content from the web.
(
Log in to post comments)