Developing on the Net: Dealing with Software Vulnerabilities
August 2001
Robert A. Martin, The MITRE Corporation
ABSTRACT
This paper discusses the CVE Initiative, an international, community-based effort from industry, government, and academia, that is creating an organizing mechanism that will make the finding and fixing of software product vulnerabilities more rapid, predictable, and efficient. The opportunities that this initiative is creating for software developers, security practitioners, and systems owners in their systems and products and for their customers will be explored. Readers will leave with an understanding of how the CVE Initiative is helping enterprise security management become more predictable, structured, and effective as a result of CVE enabled information security products, services, and methodologies.
AFCEA Federal Database Colloquium & Exposition, August 30, 2001

Additional Search Keywords
vulnerabilities, CVE, IDS, information security, community initiatives, common vulnerabilities and exposures
|