<?xml version="1.0" encoding="UTF-8" ?>
<?xml-stylesheet type="text/xsl" href="http://blogs.technet.com/utility/FeedStylesheets/rss.xsl" media="screen"?><rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:wfw="http://wellformedweb.org/CommentAPI/"><channel><title>Exposed? : Examining Secunia Unpatched Warnings - Part 3</title><link>http://blogs.technet.com/security/archive/2007/01/19/exposed-examining-secunia-unpatched-warnings-part-3.aspx</link><description>This is the final post in my 3 part series trying to get an accurate view of disclosed, but unpatched issues for Windows and Linux. In Part 1 , I looked at Secunia "unpatched" warnings and raised the question of whether the unpatched data was accurate</description><dc:language>en</dc:language><generator>CommunityServer 2.1 SP1 (Build: 61025.2)</generator><item><title>Red Hat &amp;raquo; Exposed? : Examining Secunia Unpatched Warnings - Part 3</title><link>http://blogs.technet.com/security/archive/2007/01/19/exposed-examining-secunia-unpatched-warnings-part-3.aspx#602420</link><pubDate>Sat, 20 Jan 2007 01:06:29 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:602420</guid><dc:creator>Red Hat » Exposed? : Examining Secunia Unpatched Warnings - Part 3</dc:creator><description>&lt;p&gt;PingBack from &lt;a rel="nofollow" target="_new" href="http://planetalinux.blog.br/redhat/2007/01/19/exposed-examining-secunia-unpatched-warnings-part-3/"&gt;http://planetalinux.blog.br/redhat/2007/01/19/exposed-examining-secunia-unpatched-warnings-part-3/&lt;/a&gt;&lt;/p&gt;
</description></item><item><title>A couple of interesting security blog posts</title><link>http://blogs.technet.com/security/archive/2007/01/19/exposed-examining-secunia-unpatched-warnings-part-3.aspx#602423</link><pubDate>Sat, 20 Jan 2007 01:11:57 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:602423</guid><dc:creator>Michael Howard's Web Log</dc:creator><description>&lt;p&gt;Jeff has an uncanny ability to dig into details that most folks gloss over: Exposed? : Examining Secunia&lt;/p&gt;
</description></item><item><title>Exposure exposed!</title><link>http://blogs.technet.com/security/archive/2007/01/19/exposed-examining-secunia-unpatched-warnings-part-3.aspx#602800</link><pubDate>Sat, 20 Jan 2007 06:49:50 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:602800</guid><dc:creator>Robert Hensing's Blog</dc:creator><description>&lt;p&gt;Anyone who has ever debated the whole &amp;quot;Microsoft vs. Linux security&amp;quot; thing needs to read this series&lt;/p&gt;
</description></item><item><title>re: Exposed? : Examining Secunia Unpatched Warnings - Part 3</title><link>http://blogs.technet.com/security/archive/2007/01/19/exposed-examining-secunia-unpatched-warnings-part-3.aspx#603045</link><pubDate>Sat, 20 Jan 2007 08:34:18 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:603045</guid><dc:creator>jnf</dc:creator><description>&lt;p&gt;Interesting, but misleading, while I don't doubt your numbers in the least, I think its inaccurate to not point out that the majority of all of those bugs reported in windows affects everyone running windows, whereas a minority of those affecting RHEL affects everyone running RHEL.&lt;/p&gt;
&lt;p&gt;Furthermore, you need to also ask how many patches has MS released for other peoples products? How many has RH released? How many of the bugs left unpatched in RHEL are for products created by RH or products that RH has a significant interest in (i.e. linux kernel [how many linux kernel developers work for RH?]). How many of those unpatched bugs in RHEL are being actively exploited? How many of those unpatched bugs are being actively exploited in MS products (i.e. msjet40.dll), How many of those products that RHEL has not patched are produced by third party vendors when there are no patches released by the vendor, so on and so forth.&lt;/p&gt;
&lt;p&gt;That isn't to say RH is not responsible for releasing patches, I'm just saying that this post is misleading because of the metrics it leaves out in its analysis- of course, all of these types of articles normally are (regardless of which side of the debate the author is on)&lt;/p&gt;
</description></item><item><title>Red Hat Workstation VS XP (análisis estadístico sobre vulnerabilidades y tiempo sin parche)</title><link>http://blogs.technet.com/security/archive/2007/01/19/exposed-examining-secunia-unpatched-warnings-part-3.aspx#605611</link><pubDate>Tue, 23 Jan 2007 09:17:13 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:605611</guid><dc:creator>Be Geek My Friend</dc:creator><description>&lt;p&gt;Todos sabemos, que la realidad siempre depende del color del cristal con el que se mire, lo cual hace&lt;/p&gt;
</description></item><item><title>Common Objections - Comparing Linux Distros with Windows</title><link>http://blogs.technet.com/security/archive/2007/01/19/exposed-examining-secunia-unpatched-warnings-part-3.aspx#613647</link><pubDate>Mon, 29 Jan 2007 21:32:25 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:613647</guid><dc:creator>Jeff Jones Security Blog</dc:creator><description>&lt;p&gt;Once again, my effort to explore common misperceptions (more recently exploring unpatched statistics&lt;/p&gt;
</description></item><item><title>re: Exposed? : Examining Secunia Unpatched Warnings - Part 3</title><link>http://blogs.technet.com/security/archive/2007/01/19/exposed-examining-secunia-unpatched-warnings-part-3.aspx#3112467</link><pubDate>Wed, 27 Aug 2008 02:38:56 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3112467</guid><dc:creator>state select water heater</dc:creator><description>&lt;p&gt;Nice site &amp;nbsp;&lt;/p&gt;
&lt;p&gt;Thanks, webmaster.&lt;/p&gt;
</description></item><item><title>re: Exposed? : Examining Secunia Unpatched Warnings - Part 3</title><link>http://blogs.technet.com/security/archive/2007/01/19/exposed-examining-secunia-unpatched-warnings-part-3.aspx#3112653</link><pubDate>Wed, 27 Aug 2008 11:43:00 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3112653</guid><dc:creator>state censible water heater</dc:creator><description>&lt;p&gt;Cool blog &amp;nbsp;&lt;/p&gt;
&lt;p&gt;Thanks, webmaster.&lt;/p&gt;
</description></item></channel></rss>