From Report to Patch, the OpenBSD Errata Process

Lobsters Hottest News

Summary

This article discusses the OpenBSD errata process, detailing how vulnerabilities are reported and patched in the OpenBSD operating system.

<p><a href="https://lobste.rs/s/wskpxf/from_report_patch_openbsd_errata_process">Comments</a></p>
Original Article

Similar Articles

An AI audit of FreeBSD

Lobsters Hottest

An AI-assisted security audit of FreeBSD uncovered 15 kernel vulnerabilities, including privilege escalations and a VM escape, and details the collaborative process of reporting and patching bugs with the FreeBSD team.

score by collisions, patch by panic

Lobsters Hottest

The article proposes a new severity model for vulnerability reporting based on collision counts and the presence of working exploits, arguing that the current disclosure model is broken and that patches should be prioritized when multiple researchers find the same bug or exploits are public.