WOW... that's what happens in bloated organizations with tiers under tiers ...
Might be wise to move to another vendor? On Sat, Apr 20, 2013 at 5:26 AM, <[email protected]> wrote: > VUPEN Security Research <[email protected]> wrote in > http://www.securityfocus.com/archive/1/526402 > : > > X. DISCLOSURE TIMELINE > > 2012-02-15 - Vulnerability Discovered by VUPEN > > 2013-03-06 - Vulnerability Exploited At Pwn2Own 2013 and Reported to > Adobe > > 2013-04-17 - Public disclosure > > Is a delay of a year before reporting to the vendor, acceptable? > > Thanks, Paul > > Paul Szabo [email protected] http://www.maths.usyd.edu.au/u/psz/ > School of Mathematics and Statistics University of Sydney Australia > > _______________________________________________ > Full-Disclosure - We believe in it. > Charter: http://lists.grok.org.uk/full-disclosure-charter.html > Hosted and sponsored by Secunia - http://secunia.com/ > -- Robert Q Kim Man with a Van London: http://sparkah.com/guerrilla-marketing-strategies/man-with-a-van-service-london-is-recommended-by-sparkah-strategic/ 2611 S Coast Highway San Diego, CA 92007 310 598 1606
_______________________________________________ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and sponsored by Secunia - http://secunia.com/
