[prev in list] [next in list] [prev in thread] [next in thread] 

List:       oss-security
Subject:    Re: [oss-security] kernel: hvc_console: Fix race between hvc_close
From:       Eugene Teo <eugene () redhat ! com>
Date:       2010-04-19 1:55:43
Message-ID: 4BCBB81F.6050100 () redhat ! com
[Download RAW message or body]

Hi Michael,

[snipped]
> are issues in features that are disabled by default generally treated
> as unimportant? there are bound to be a (perhaps small) subset of users
> turning these features on; exposing themselves to more risk if these
> issues go unfixed. i suppose cve assignment depends on whether or not
> there is an expectation to protect those users in addition to
> defaults-using users.

They are not treated as unimportant. However, customers have been 
advised that our support scope of coverage does not include modified 
RPMs (i.e. recompiling of kernels to enable unsupported features, etc).

https://www.redhat.com/support/policy/soc/production/

Feel free to email us directly at secalert@redhat.com if you have more 
vendor/Red Hat-specific questions.

Thanks, Eugene
--
Eugene Teo / Red Hat Security Response Team
[prev in list] [next in list] [prev in thread] [next in thread] 

Configure | About | News | Add a list | Sponsored by KoreLogic