Thursday, March 14, 2013

CVE Announce - March 14, 2013 (opt-in newsletter from the CVE Web site)

Welcome to the latest issue of the CVE-Announce e-newsletter. This email
newsletter is designed to bring recent news about CVE, such as new versions,
upcoming conferences, new Web site features, etc. right to your email box.
Common Vulnerabilities and Exposures (CVE) is the standard for information
security vulnerability names. CVE content results from the collaborative
efforts of the CVE Editorial Board, which is comprised of leading
representatives from the information security community. Details on
subscribing (and unsubscribing) to the email newsletter are at the end.
Please feel free to pass this newsletter on to interested colleagues.

Comments: cve@mitre.org

-------------------------------------------------------
CVE-Announce e-newsletter/March 14, 2013
-------------------------------------------------------

Contents:

1. Feature Story
2. Hot Topic #1
3. Hot Topic #2
4. Also in this Issue
5. Details/Credits + Subscribing and Unsubscribing


FEATURE STORY:

MITRE to Host CVE Booth at "InfoSec World 2013," April 15-17, 2013

MITRE will host a booth about "Strengthening Cyber Defense" that includes
CVE at "InfoSec World Conference & Expo 2013" at Walt Disney World Swan and
Dolphin in Orlando, Florida, USA, on April 15-17, 2013. Attendees will learn
how information security data standards facilitate both effective security
process coordination and the use of automation to assess, manage, and
improve the security posture of enterprise security information
infrastructures.

Members of the CVE Team will be in attendance. Please stop by Booth 313 and
say hello!

Visit the CVE Calendar for information on this and other events.

LINKS:

InfoSec World 2013 - http://www.misti.com/infosecworld

Strengthening Cyber Defense - http://www.mitre.org/work/cybersecurity/

CVE Calendar - http://cve.mitre.org/news/calendar.html

---------------------------------------------------------------
HOT TOPIC #1:

CVE Editor's Commentary Page Updated

Three new items have been added to the CVE-Specific section of the CVE
Editor's Commentary page in the CVE List section of the CVE Web site: "CVE
and 'weak' crypto," "CVE abstraction choices and the Linux kernel," and "CVE
Guidance for Libraries and Resource-Consumption DoS."

The CVE Editor's Commentary page includes opinion and commentary about
vulnerabilities, software assurance, and related topics by CVE List Editor
Steve Christey. Posts are either Community Issues or CVE-Specific.

LINKS:

CVE Editor's Commentary page - http://cve.mitre.org/cve/edcommentary.html

"CVE and 'weak' crypto" -
http://www.openwall.com/lists/oss-security/2013/03/12/5

"CVE abstraction choices and the Linux kernel" -
http://www.openwall.com/lists/oss-security/2013/03/08/6

"CVE Guidance for Libraries and Resource-Consumption DoS" -
http://www.openwall.com/lists/oss-security/2013/02/21/2

---------------------------------------------------------------
HOT TOPIC #2:

CVE Editorial Board Meeting Minutes Now Available

Meeting minutes from the CVE Editorial Board teleconference meeting held on
January 8, 2013 are now available on the "CVE Editorial Board Email
Discussion List & Meetings Archive" page in the CVE Community section of the
CVE Web site.

LINKS:

CVE Editorial Board - http://cve.mitre.org/community/board/

Meeting minutes -
http://cve.mitre.org/data/board/archives/2013-02/msg00013.html

---------------------------------------------------------------
ALSO IN THIS ISSUE:

* MITRE Hosts CVE Booth at "RSA Conference 2013"

Read these stories and more news at http://cve.mitre.org/news

---------------------------------------------------------------
Details/Credits + Subscribing and Unsubscribing

Managing Editor: Steve Boyle, Information Security Technical Center. Writer:
Bob Roberge. The MITRE Corporation (www.mitre.org) maintains CVE and
provides impartial technical guidance to the CVE Editorial Board on all
matters related to ongoing development of CVE.

To unsubscribe from the CVE-Announce e-newsletter, open a new email message
and copy the following text to the BODY of the message "SIGNOFF
CVE-Announce-list", then send the message to: listserv@lists.mitre.org. To
subscribe, send an email message to listserv@lists.mitre.org with the
following text in the BODY of the message: "SUBSCRIBE CVE-Announce-List".

Copyright 2013, The MITRE Corporation. CVE and the CVE logo are registered
trademarks of The MITRE Corporation.

For more information about CVE, visit the CVE Web site at
http://cve.mitre.org or send an email to cve@mitre.org.

Learn more about Making Security Measurable at
http://measurablesecurity.mitre.org and Strengthening Cyber Defense at
http://www.mitre.org/work/cybersecurity/cyber_standards.html.

No comments: