View Single Post
Old 01-27-2014, 11:00 AM   #222
TheSFReader
Groupie
TheSFReader is just really niceTheSFReader is just really niceTheSFReader is just really niceTheSFReader is just really niceTheSFReader is just really niceTheSFReader is just really niceTheSFReader is just really niceTheSFReader is just really niceTheSFReader is just really niceTheSFReader is just really niceTheSFReader is just really nice
 
Posts: 172
Karma: 161634
Join Date: Dec 2010
Device: Nook
Quote:
Originally Posted by simond View Post
Yep, they're industry leaders in that, it's just the timing is rather convenient...
http://web.nvd.nist.gov/view/vuln/de...=CVE-2014-0494
On the other hand, it is a standard practice (standard, not necessarily the good/best one)to only publish vulnerabilities when a correction is available.
It also is standard practice to publish corrections in a major/minor release rather than as a quick patch.

(On the Other hand, the previous Vulnerability had been fixed via a sub-minor release... 2.0-->2.0.1 cf http://web.nvd.nist.gov/view/vuln/de...013-1377&cid=7 )
TheSFReader is offline   Reply With Quote