View Single Post
Old 01-27-2014, 11:41 AM   #224
simond
Fanatic
simond ought to be getting tired of karma fortunes by now.simond ought to be getting tired of karma fortunes by now.simond ought to be getting tired of karma fortunes by now.simond ought to be getting tired of karma fortunes by now.simond ought to be getting tired of karma fortunes by now.simond ought to be getting tired of karma fortunes by now.simond ought to be getting tired of karma fortunes by now.simond ought to be getting tired of karma fortunes by now.simond ought to be getting tired of karma fortunes by now.simond ought to be getting tired of karma fortunes by now.simond ought to be getting tired of karma fortunes by now.
 
Posts: 532
Karma: 1062755
Join Date: Aug 2005
Location: London, UK
Device: Kobo Aura One, iPad, iPhone
Quote:
Originally Posted by TheSFReader View Post
On the other hand, it is a standard practice (standard, not necessarily the good/best one)to only publish vulnerabilities when a correction is available.
It also is standard practice to publish corrections in a major/minor release rather than as a quick patch.

(On the Other hand, the previous Vulnerability had been fixed via a sub-minor release... 2.0-->2.0.1 cf http://web.nvd.nist.gov/view/vuln/de...013-1377&cid=7 )
Yep, I don't blame them for waiting for the next version, and I don't really believe they've left those to encourage people to move, but I like conspiracy theories sometimes...
simond is offline   Reply With Quote