[SLL] Vulnerabilities by vendor
Glenn Stone
technoshaman at liawol.org
Thu Nov 29 09:14:47 PST 2007
On Thu, Nov 29, 2007 at 07:45:55AM -0800, Eric Kahklen wrote:
>I am looking for a site that might list the number of OS
>bugs/vulnerabilities for Linux, Windows, and OS X. I know it will be
>hard to accurately compare each OS because of the difference in the
>standard application base. Basically I am just looking for rough
>numbers or a graphic to help users understand the security advantages of
>a Linux based computer vs Windows. I know there are a ton of factors to
>consider, but I want to avoid the deer in the headlights look if I can :)
I think just as important a number is *how long the bugs stay out there*.
In my experience the average time from discovery to fix of a security bug is
about 48 hours for Linux and associated stuff. Microsoft pushes one patch a
month? Also, look at the number of zero-day 'sploits on either side... most
of the things that get targeted in Linux are ones that have long since been
patched.
-- Glenn
More information about the linux-list
mailing list