Comment on Linux kernel use-after-free in Netfilter, local privilege escalationparentComments−hsbauauvhabzb3ySo we lower the bar to all adversaries with no benefit?If you can read exploit code to determine if patching is worth it for your use case, you can probably also read diffs for the same outcome.I’m not saying don’t release them, but releasing them with short notice seems irresponsible, without much benefit to defenders.
Comments
So we lower the bar to all adversaries with no benefit?
If you can read exploit code to determine if patching is worth it for your use case, you can probably also read diffs for the same outcome.
I’m not saying don’t release them, but releasing them with short notice seems irresponsible, without much benefit to defenders.