[Full-disclosure] Reuters: Microsoft to give holes info to Uncle Sam first - responsible vendor notification may not be a good idea any more...

From: Tamas Feher (etomcat_at_freemail.hu)
Date: 03/12/05

  • Next message: Steve Scholz: "RE: [Full-disclosure] Re: Multiple AV Vendor IncorrectCRC32BypassVulnerability."
    To: full-disclosure@lists.grok.org.uk
    Date: Sat, 12 Mar 2005 13:41:26 +0100
    
    

    http://www.reuters.com/newsArticle.jhtml?type=technologyNews&storyID=7
    876004&src=rss/technologyNews

    Microsoft to Offer Patches to U.S. Govt. First
    by Reuters, 11 Mar 2005

    Microsoft Corp. is to give the U.S. government priority in fixing
    security holes in Windows and other software, The Wall Street Journal
    reported on Friday.

    Under a plan to take effect later this year, Microsoft will give the
    U.S. Air Force versions of software "patches" to fix serious security
    vulnerabilities up to a month before they are available to others,
    the paper said.

    The U.S. Department of Homeland Security will give advance notice of
    problems to other government agencies and distribute patches to them,
    the Journal said, citing officials at Microsoft and the White House's
    Office of Management and Budget.
    _______________________________________________
    Full-Disclosure - We believe in it.
    Charter: http://lists.grok.org.uk/full-disclosure-charter.html
    Hosted and sponsored by Secunia - http://www.secunia.com/


  • Next message: Steve Scholz: "RE: [Full-disclosure] Re: Multiple AV Vendor IncorrectCRC32BypassVulnerability."

    Relevant Pages

    • Re: How to Maintain an IIS Server?
      ... >>> I looked at the Microsoft Security Website. ... >> before a firewall and antivirus have been installed]. ... >> new patches that are missing, ...
      (microsoft.public.inetserver.iis.security)
    • Re: How to Maintain an IIS Server?
      ... > [for MS MBSA Baseline Security Analyzer] ... Get a firewall or two as well, ... >>> new patches that are missing, ... >>> software installed on your computer, especially Microsoft Windows, ...
      (microsoft.public.inetserver.iis.security)
    • Re: Ithis microsoft security site?
      ... patches or any type of updates attached to email. ... http://microsoft.com/technet/security is authoritative for all security ... >> Microsoft Corporation Network Technical Services ... Install now to protect your computer ...
      (microsoft.public.security)
    • Exploits Circulating for Unpatched Windows PCs
      ... Although Microsoft released a string of patches to fix security flaws in ... malicious software that targets security flaws for which patches have just ... fixes to address 21 security vulnerabilities, ...
      (comp.dcom.telecom)
    • Virus disguised as MS Security bulletin or are we just paranoid?
      ... I wanted to let you know that Microsoft does NOT will ... Information on Bogus Microsoft Security Bulletin Emails ... Any and all legitimate patches and updates are readily ...
      (microsoft.public.security)