> In reality they've probably already validated most if not all of the
> vulnerability. Microsoft seems to have decided for some reason that it is
> not in their [or maybe our] best interest for them to validate
> vulnerabilities until there is a patch out. Possibly they feel validating
> the vuln to the world increases the risk rather than decreasing it.

Isn't a security advisory validating the existence of the
vulnerability ?

