The group you are posting to is a Usenet group. Messages posted to this group will make your email address visible to anyone on the Internet.
Your reply message has not been sent.
Your post was successful
Newsgroups: linux.kernel
From: Steve Bergman <st...@rueb.com>
Date: Mon, 10 Jan 2005 17:50:17 +0100
Local: Mon, Jan 10 2005 11:50 am
Subject: Proper procedure for reporting possible security vulnerabilities?
There seems to be some confusion in certain quarters as to the proper
procedure for reporting possible kernel security issues. REPORTING-BUGS says send bug reports to the maintainer of that area of the kernel. However, what about areas for which a maintainer is not listed? (e.g. VM) It seems that some take that to mean send it directly to Linus and if you don't hear something back quickly, release an exploit to the wild. So what is the preferred procedure and is it documented somewhere? Thanks for any information, You must Sign in before you can post messages.
To post a message you must first join this group.
Please update your nickname on the subscription settings page before posting.
You do not have the permission required to post.
| ||||||||||||||