[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: standard format for security vulnerability data



> * active encouragement -or- urging not to proceed
> * ideas, insights, opinions
> * recommendations - how to move forward, requirements, etc.

I think file in text with markups would be a concensual solution ?

I'm volonteer for writing a RFC on this subject !

There were some works done at the University of Purdue, I think it was
a taxonomy of security faults.

Tristan Debeaupuis
-- 
Tristan.Debeaupuis@hsc.fr -=- Herve Schauer Consultants -=-
Si c'est possible, c'est fait; si c'est impossible, cela se fera.
Charles Alexandre de CALONNE.