[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

[Full-Disclosure] Microsoft credit policy (was: EEYE: Microsoft ASN.1 Library Length Overflow Heap Corruption)



Hello,

* On Wed, Feb 11, 2004 at 01:02:30PM +0800 Benjamin Meade wrote:

> >Link: http://www.eeye.com/html/Research/Upcoming/index.html 
> 
> Given this, couldn't they (eEye) at least release basic details and a 
> workaround?

No, they cannot. If they did, MS would not give them credit on this
discovery:

   http://www.microsoft.com/technet/security/bulletin/policy.asp

Isn't it a good advertisement to be mentioned in Microsoft's Knowledge
Base?

Just my 2 cent worth,
   Spiro.

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.netsys.com/full-disclosure-charter.html