[SLL] Vulnerabilities by vendor

Glenn Stone technoshaman at liawol.org
Thu Nov 29 09:14:47 PST 2007


On Thu, Nov 29, 2007 at 07:45:55AM -0800, Eric Kahklen wrote:
>I am looking for a site that might list the number of OS 
>bugs/vulnerabilities for Linux,  Windows, and OS X.   I know it will be 
>hard to accurately compare each OS because of the difference in the 
>standard application base.  Basically I am just looking for rough 
>numbers or a graphic to help users understand the security advantages of 
>a Linux based computer vs Windows.  I know there are a ton of factors to 
>consider, but I want to avoid the deer in the headlights look if I can :)

I think just as important a number is *how long the bugs stay out there*.
In my experience the average time from discovery to fix of a security bug is
about 48 hours for Linux and associated stuff.  Microsoft pushes one patch a
month?  Also, look at the number of zero-day 'sploits on either side... most
of the things that get targeted in Linux are ones that have long since been
patched.  

-- Glenn


More information about the linux-list mailing list