1,251 karma · joined July 17, 2008
On Unix systems the environment variables SSL_CERT_FILE and SSL_CERT_DIR can now be used to override the system default locations for the SSL certificate file and SSL certificate files directory, respectively.
The os/exec package now prevents child processes from being created with any duplicate environment variables. If Cmd.Env contains duplicate environment keys, only the last value in the slice for each duplicate key is used.
Alternative is using github pages with something like jekyll.
liblwres90 1:9.9.5.dfsg-3ubuntu0.6
mysql-common 5.5.46-0ubuntu0.14.04.2
libmysqlclient-dev 5.5.46-0ubuntu0.14.04.2
libmysqlclient18 5.5.46-0ubuntu0.14.04.2
rsync 3.1.0-2ubuntu0.1
bind9-host 1:9.9.5.dfsg-3ubuntu0.6
libisccc90 1:9.9.5.dfsg-3ubuntu0.6
libisc95 1:9.9.5.dfsg-3ubuntu0.6
dnsutils 1:9.9.5.dfsg-3ubuntu0.6
linux-libc-dev 3.13.0-74.118
libbind9-90 1:9.9.5.dfsg-3ubuntu0.6
libxml2 2.9.1+dfsg1-3ubuntu4.6
libdns100 1:9.9.5.dfsg-3ubuntu0.6
libxml2-dev 2.9.1+dfsg1-3ubuntu4.6
libisccfg90 1:9.9.5.dfsg-3ubuntu0.6We'd love to be at the point where Patchwork notifications are ahead of public releases, and get you patched before the vulnerability is widely exploited. In fact, one of the crazy ideas we've been kicking around is how to detect 0days without installing an agent on production machines.
To be totally honest, we're still working out all the wrinkles of how billing would work, what's fair to users, and how to track your usage, so feedback is greatly appreciated!
We’ll be here all day answering comments or you can reach us at shamiq@patchworksecurity.com or david@patchworksecurity.com.
As a corollary: consider creating a better PoC for the bug.
If you can help me make it secure, I'd love to help you design it.