Slashdot Mirror


A Security Bug In Mozilla - The Human Perspective

xslf writes "Alex Vincent, the reporter of the data-loss security bug 259708, writes about the behind the scene process of reporting it, casting light on the problems of dealing with security related bugs reported by the community, which isn't always aware of the security implications of the bugs reported. The issues with the FLOSS process shown in this bug might get worse, once more and more people use FLOSS and add to the process, without being full fledged coders, and rely on binary releases of software." (Note, you'll have to copy and paste that link to view the bug report, or click through from the linked story.)

3 of 321 comments (clear)

  1. Re:3.5-year-old information disclosure and DoS by The+Bungi · · Score: 0, Troll
    Yeah but that would have gotten me modded down as "troll" even faster. Zod forbid someone actually points out things like these.

    And that's why I love Splashdork.

  2. Who cares? by SpamJunkie · · Score: 0, Troll

    Give me the robot perspective!

  3. Re:3.5-year-old information disclosure and DoS by rmstar · · Score: 1, Troll

    This shitty subthread is nothing but astroturfing!

    This isn't even a denial of service bug. Hey, this can be only considered a bug if you are a fucking pedantic retard. All an "attacker" can do is find out wether some image file exists.

    And, all versions of IE and NN are ""vulnerable"" (add more quotes, please) too.