On The Insider: Britney's Bikini-Clad Top 10
BNET Business Network:
BNET
TechRepublic
ZDNet
TalkBack 8 of 34:
Next »
« Previous
No, I didn't
First off, show me the exploits, show me the exploits, SHOW ME THE EXPLOITS for the embedded web font and the quicktime vulnerabilities. If you can't, then you simply cannot hold the belief that the list is only for vulnerabilities that have exploits. Seriously, can you see a flaw in my logic?

Second, let me make the following statement:
The jar in front of you contains jelly beans, gum balls, and licorice.

This is a statement that is similar in form to:
Technical Cyber Security Alerts provide timely information about current security issues, vulnerabilities, and exploits.

Question: Is every piece of candy in the jar a licorice?
Answer: No, some will be jelly beans and gumballs.

Similarly, the list you showed us will have security issues, vulnerabilities, and a few exploits, depending on what the alert is about. Again, I repeat my first question: show me the exploits!!!

Face it, you can't. The list simply shows security alerts: things that the people at CERT believe to be important to mention, probably because the alert contains something that could affect many people (although I'm only guessing, as would you, about the criteria they use). Chances are good that any Linux vulnerability that affects only home type uses of Linux (like libpng vulnerabilities) are probably not going to make the security alert list whereas anything remotely related to Windows probably will. In face, I'll hazard a guess that the only reason the Quicktime vulnerability made it to the security alert list is because it affects Windows. Had it not affected Windows, I wonder if that fact alone would have kept it off the list. But I'm only guessing on that last bit. It won't hurt my pride at all if you were to prove me wrong. happy
Posted by: NonZealot   Posted on: 01/11/06 You are currently: a Guest | Members login | Terms of Use
Reply to Story No further replies to this post will be accepted.

Alert moderator to an offensive message

Subscribe to this discussion via Email or RSS

Updates installed!  Grayson Peddie | 01/10/06
Zealot logic dictates that these aren't serious  NonZealot | 01/10/06
better tell CERT that, they think it is critical  ~doolittle~ | 01/10/06
This proves that Windows is more secure!!1!!!one!!1  NonZealot | 01/11/06
CERT cyber security alert is where you don't want your listing  ~doolittle~ | 01/11/06
Post-exploit patches? Show me the exploits!  NonZealot | 01/11/06
you just answered your own question  ~doolittle~ | 01/11/06
No, I didn't  NonZealot | 01/11/06
RE: No, I didn't (inverse proprotions explained)  ~doolittle~ | 01/12/06
Hey Doolittle, only one, very simple question  NonZealot | 01/12/06
RE: Hey... I don't have to show anything - CERT says so  ~doolittle~ | 01/12/06
Look again!  NonZealot | 01/12/06
Flaw Could Allow Hacker To 'Own Every Outlook User In The World In A Week'  ~doolittle~ | 01/12/06
"An exploit exists"  toadlife | 01/13/06
Again  Shelendrea | 01/10/06
Ouch!  toadlife | 01/10/06
All it takes is one user to make a mistake  crocd | 01/10/06
Our users don't have...  toadlife | 01/10/06
need a  Shelendrea | 01/10/06
Why not...  SGT_Spam | 01/10/06
Various reasons  toadlife | 01/10/06
I agree with that  crocd | 01/11/06
Read Proof of concept  voska | 01/11/06
link?  toadlife | 01/11/06
Windows takes the lead in CERT Technical Cyber Security Alerts '06  ~doolittle~ | 01/10/06
This proves that Windows is more secure!!1!!!one!1  NonZealot | 01/11/06
the listing shoud be in the summary - not the high-risk listing  ~doolittle~ | 01/11/06
...nice try, you just keep shooting yourself in the foot (nt)  ~doolittle~ | 01/11/06
Why Windows will never be secure  Chad_z | 01/11/06
And if Linux had 95% of the desktop...  3D0G | 01/11/06
Blasphemy!  toadlife | 01/11/06
FLAME ON!  Shelendrea | 01/11/06
Obscure OS's are good for people like you that don't understand security  toadlife | 01/11/06
Calling "Bytemaster"..  jinko | 01/11/06

What do you think?

SponsoredWhite Papers, Webcasts, and Downloads

advertisement
advertisement

IT Solutions for 2010

  • Get cost-effective strategies and roadmaps on the most important issues facing IT leaders in 2010! Learn how to easily cut costs and deliver greater efficiency starting with your database, IT compliance management and data center. Visit the IT Leaders Dashboard. Visit the IT Leaders Dashboard.
  • Read about top issues IT decision-makers face every day, plus get cost effective solutions to real life IT problems. Oracle Topline