On 9 April 2014 18:53, Dag-Erling Smørgrav <d...@des.no> wrote: > Pawel Biernacki <pawel.bierna...@gmail.com> writes: >> RedHat managed to provide the fix within 21 hours but aparently they >> knew very eraly about the issue. FreeBSD Security Team didn't? Why? >> You can _see_ the whole process on their bugzilla >> https://bugzilla.redhat.com/show_bug.cgi?id=1084875. > > No you can't. That ticket is just window dressing. By the time it was > created, RedHat had known about the issue for at least a week, and > probably more. >
According to http://seclists.org/oss-sec/2014/q2/36 RedHat learnt about it 7th March and after that the bugzilla entry was created. I assume that it was marked as private and unaccessible to other users for few hours until release of SA but at least he have some trace of what was done. -- One of God's own prototypes. A high-powered mutant of some kind never even considered for mass production. Too weird to live, and too rare to die. _______________________________________________ freebsd-security@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/freebsd-security To unsubscribe, send any mail to "freebsd-security-unsubscr...@freebsd.org"