Follow @Openwall on Twitter for new release announcements and other news
[<prev] [next>] [<thread-prev] [thread-next>] [day] [month] [year] [list]
Message-ID: <d0ca7096-045c-407f-9f48-c8e3855448b9@schafweide.org>
Date: Fri, 22 Dec 2023 12:23:43 +0100
From: Bjoern Franke <bjo@...afweide.org>
To: oss-security@...ts.openwall.com
Subject: Re: Re: New SMTP smuggling attack

Hi,

> 
> I'm a little confused by sec-consult's process here. They identify a
> problem affecting various pieces of software including some very widely
> deployed open source software, go to the trouble of doing a coordinated
> disclosure, but only do that with...looking at their timeline... gmx,
> microsoft and cisco?
> 

they already got some criticism regarding this behaviour:

https://zombofant.net/@jssfr/111618969359339789

https://gay-pirate-assassins.de/@moanos/statuses/01HJ8D8XQ7ZJ89HN4TZFZZ9AS8

Regards

Powered by blists - more mailing lists

Please check out the Open Source Software Security Wiki, which is counterpart to this mailing list.

Confused about mailing lists and their use? Read about mailing lists on Wikipedia and check out these guidelines on proper formatting of your messages.