[Secure-testing-team] debian involvement in the webkit security team

Michael S Gilbert michael.s.gilbert at gmail.com
Tue Jul 21 16:38:40 UTC 2009


hello,

i noticed that no one from debian is involved in the webkit security
team [1].  would it make sense to get someone on there to be able to
better deal with webkit-related security issues?  there are currently
30+ disclosed but untriageable webkit CVEs in debian because of
webkit's closed-off security policies.  personally, i don't understand
why they are keeping this information secret even after public
disclosure that the issues exist.

[1] http://webkit.org/security/security-group-members.html



More information about the Secure-testing-team mailing list