451 CAOS Theory *
A blog for the enterprise open source community

Open Source security patches

Nick Selby, July 7, 2006 @ 7:50 am ET

Interesting thread on The Daily Dave pen-testing mailing list: Dave asked if anyone had a list comparing the patch speeds of different Linux distributions, such as, who patched OpenOffice bugs first…And who patched them last. And when will Ubuntu include grsec?

One of the list members shot back a post calling our attention to The LWN.net security alerts database, which keeps track of that kind of information, sans pretty pictures but chock full o’ interesting statistics:

Distro Patch Date
Debian DSA-1104-1 2006-06-30
Red Hat RHSA-2006:0573-01 2006-07-03
Suse SUSE-SA:2006:040 2006-07-03
Fedora FEDORA-2006-770 2006-07-03

Exceptionally cool. Then someone posted this this morning: “The Debian patch was superseded on 2006-07-06. Apparently, the first fix was incorrect.” In any event, these (the Daily Dave and LWN’s alert database) are both great open source and security resources.

Permalink | Technorati Links | Bookmark on del.icio.us | digg it
Categories: Software

Comments RSS feed | Trackback URI

Comments»

No comments yet.

Leave a Comment

Some HTML is allowed: <a href="" title=""> <abbr title=""> <acronym title=""> <b> <blockquote cite=""> <cite> <code> <del datetime=""> <em> <i> <q cite=""> <strike> <strong> .

Your Comment (smaller size | larger size)