Business Wire
Welcome
  • Log In
  • Sign Up
Search News:
Help
http://www.redhat.com
September 07, 2006 08:00 AM Eastern Time 

Red Hat Champions a New Public Forum For Software Companies to Issue Official Statements on Vulnerabilities

RALEIGH, N.C.--(BUSINESS WIRE)--Sept. 7, 2006--

  Creating a New, Transparent Way for the Software Industry to Contribute Real-Time, Official Statements on Vulnerabilities Using the National Vulnerability Database  

“Through our work with NIST's National Vulnerability Database, we can now provide official statements about vulnerabilities and their potential impact via a widely recognized mechanism, as well as enable the entire software industry to contribute.”



Red Hat (NASDAQ: RHAT), the world's leading provider of open source solutions to the enterprise, today announced its continuing commitment to superior security services with a new initiative, implemented by the National Institute of Standards and Technology (NIST), that enables members of the software industry to officially and publicly comment on vulnerabilities. This service is being implemented within the National Vulnerability Database (NVD) at NIST, based on Red Hat's recommendation.

Red Hat approached NIST with the idea of using the NVD to create an official vendor statement service based on the Common Vulnerabilities and Exposures (CVE) naming standard, giving the software industry an open, transparent forum to contribute information about vulnerabilities. Both open source and proprietary software vendors now have the opportunity to comment on vulnerabilities in their products, and can use the service in a variety of ways, including configuration and remediation guidance, clarifications of vulnerability applicability, deeper vulnerability analysis, disputes of third-party vulnerability information, and explanations of vulnerability impact.

Red Hat will be the first contributor to the service by providing real-time updates to the NVD about how vulnerabilities may or, just as importantly, may not affect Red Hat products. This information resource is critical to the timely dissemination of security information for Red Hat customers and will allow customers to take action quickly if needed. It is also the benefit that customers can expect on a much larger scale when the service is utilized by the software industry as a whole.

"With advancements such as SELinux and Execshield, Red Hat and the open source community continue to build superior security capabilities into the platform that natively protect against malicious use of vulnerabilities, but we are constantly looking for ways to improve and strengthen our security measures. Increasing and enhancing the communication paths and mechanisms for customers to obtain information about vulnerabilities is another way we can help our customers," said Mark J. Cox, Red Hat Security Response Director, Red Hat. "Through our work with NIST's National Vulnerability Database, we can now provide official statements about vulnerabilities and their potential impact via a widely recognized mechanism, as well as enable the entire software industry to contribute."

"We appreciate Red Hat approaching us with this idea of creating the official vendor statement initiative within the National Vulnerability Database," said Peter Mell, NVD Program Manager, NIST. "Software vendors have the deepest knowledge about their products and are uniquely positioned to comment on their vulnerabilities. Thanks to Red Hat's creativity, we are able to provide this service to the software development community as a whole."

As a widely recognized, comprehensive cyber security resource containing all publicly available U.S. government vulnerability information, the NVD can be used by users of both open source and proprietary software. By centralizing and communicating information for vulnerabilities, customers and users will benefit from increased information coming from both the U.S. government and vendors themselves.

To learn more about vendor statements within the NVD, please visit http://nvd.nist.gov. Vendor statements are directly visible from the relevant vulnerability pages. A complete XML feed is updated every two hours at http://nvd.nist.gov/download/vendorstatements.xml. To learn more about Red Hat's security initiatives, solutions, and resources, please visit http://www.redhat.com/security.

About Red Hat, Inc.

Red Hat, the world's leading open source solutions provider, is headquartered in Raleigh, NC with satellite offices spanning the globe. The most trusted name in open source, CIOs and other senior-level IT executives have ranked Red Hat as the industry's most valued vendor for two consecutive years in the CIO Insight Magazine Vendor Value study. Red Hat is leading Linux and open source solutions into the mainstream by making high-quality, low-cost technology accessible. Red Hat provides an operating system platform, Red Hat Enterprise Linux, along with applications, management, and middleware solutions, including JBoss Enterprise Middleware Suite. Red Hat is accelerating the shift to service-oriented architectures and enabling the next generation of web-enabled applications running on a low-cost, secure open source platform. Red Hat also offers support, training and consulting services to its customers worldwide and through top-tier partnerships. Red Hat's open source strategy offers customers a long term plan for building infrastructures that are based on and leverage open source technologies with a focus on security and ease of management. Learn more: http://www.redhat.com

Forward Looking Statements

Certain statements contained in this press release may constitute "forward-looking statements" within the meaning of the Private Securities Litigation Reform Act of 1995. Forward-looking statements provide current expectations of future events based on certain assumptions and include any statement that does not directly relate to any historical or current fact. Actual results may differ materially from those indicated by such forward-looking statements as a result of various important factors, including: risks related to the integration of acquisitions; the ability of the Company to effectively compete; the inability to adequately protect Company intellectual property and potential for infringement or breach of license claims regarding third party intellectual property; risks related to data and information security vulnerabilities; ineffective management of, and control over, the Company's growth and international operations; adverse results in litigation; the dependence on key personnel as well as other factors contained in in our most recent Annual Report on Form 10-K (copies of which may be accessed through the Securities and Exchange Commission's website at http://www.sec.gov), including those found therein under the captions "Risk Factors" and "Management's Discussion and Analysis of Financial Condition and Results of Operations". In addition, the forward-looking statements included in this press release represent the Company's views as of the date of this press release and these views could change. However, while the Company may elect to update these forward-looking statements at some point in the future, the Company specifically disclaims any obligation to do so. These forward-looking statements should not be relied upon as representing the Company's views as of any date subsequent to the date of the press release.

LINUX is a trademark of Linus Torvalds. RED HAT and JBOSS are registered trademarks of Red Hat, Inc. and its subsidiaries in the US and other countries.

Contacts

Red Hat
Caroline Kazmierski, 919-754-4386
carolinek@redhat.com

Recent Stories from Red Hat, Inc.

  • View Press Release
    Red Hat and Arkelis Collaborate to Deliver Reliable, High-Performing Messaging Solution to Financial Services Organizations Worldwide
    February 09, 2012
    RALEIGH, N.C. & MECHELEN, Belgium--(BUSINESS WIRE)--Red Hat, Inc. (NYSE: RHT), the world’s leading provider of open source solutions, and Arkelis NV, a fully owned subsidiary of SWIFT, the global p... more »
  • View Press Release
    Red Hat Introduces Virtual Storage Appliance for Amazon Web Services
    February 07, 2012
    RALEIGH, N.C.--(BUSINESS WIRE)--Red Hat today announced the availability of the Red Hat Virtual Storage Appliance for Amazon Web Services (AWS). more »
  • View Press Release
    Red Hat to Recognize Organizations with Sixth Annual Innovation Awards
    February 06, 2012
    RALEIGH, N.C.--(BUSINESS WIRE)--Red Hat today announced nominations are open for its sixth annual Red Hat Innovation Awards, which will be presented at Red Hat Summit and JBoss World, taking place ... more »
More Stories
RSS feed for Red Hat, Inc.
http://www.redhat.com

Company Information Center

Red Hat, Inc. RSS feed for Red Hat, Inc.

NASDAQ:RHAT

Share

  • Facebook
  • Twitter
  • LinkedIn
  • Delicious
  • Reddit
  • StumbleUpon
  • Digg
  • MySpace
  • Newsvine
  • Google Bookmark
  • Yahoo! Bookmark
  • EmailEmail
Tweet
  • EmailEmail
All News
Business Wire
  • Home
    • Home
    • Membership Benefits
    • Submit a Press Release
  • News
    • All News
    • News with Multimedia
    • News by Industry
    • News by Subject
    • News by Language
    • RSS Feeds
    • Business Wire Mobile
    • Features
    • Company NewsCenters
    • Smart Marketing Pages
    • Company Profiles
    • Annual Reports
  • Events
    • Trade Shows & Events
    • Earnings & Conference Calls
    • Business Wire Events
  • PR Services
    • Press Release Distribution
    • Distribution Lists
    • Industry Targeting
    • LatinoWire & Ethnic Media
    • Public Policy Wire
    • Trade Show Services
    • Photos & Multimedia Marketing
    • GloMoSoMe
    • Press Release Measurement
    • Mobile Alerts
    • Clips & Research
    • Fax & Email Services
    • Online Newsrooms
    • News Feeds
  • IR Services
    • Material News Disclosure
    • XBRL
    • EDGAR (US)
    • IPO Services
    • SEDAR (Canada)
    • European Disclosure
    • Corporate Social Responsibility (CSR)
    • Investor Targeting
    • Fax & Email Services
    • Online Investor Centers
    • IR Resource Center
  • SEO Services
    • Press Release Optimization
    • EON: Enhanced Online News
    • Webinars & Resources
  • Journalist Tools
    • PressPass: Your News
    • Conduct Surveys
    • Business Wire News Feeds
    • Business Wire News On Your Website
    • Journalism Associations
  • Support & Education
    • FAQ
    • How to Write a Press Release
    • How To Optimize a Press Release for Search
    • How to Distribute a Press Release
    • Find Your News Online
    • Sample Press Release
    • Features News Tips
    • International Media Tips
    • SEC Regulations
    • Exchange Guidelines
    • White Papers
    • Webinars & Podcasts
    • Get WiredIn!
  • About Us
    • Business Wire Newsroom
    • Contact Us
    • History
    • Jobs
  • About Us
  • Contact Us
  • Site Map
  • Privacy Statement
  • Terms of Use
  • ©2012 Business Wire

More Business Wire sites

  • Canada
  • UK/Ireland
  • Deutschland
  • France
  • Italy
  • Japan
  • EON: Enhanced Online News
  • Tradeshownews.com
  • PYMNTS.com

About Us

  • Business Wire Newsroom
  • Contact Us
  • Business Wired blog

News on BusinessWire.com

  • All News
  • RSS Feeds
  • Business Wire Mobile Apps

Follow Us on Twitter

  • @BusinessWire
  • @BWSportsWire
  • @BWPolitics
  • @BWCSRNews
  • @EONpr
  • @TradeshowNews
  • @BW_Canada
  • @BWIntlMedia
  • @BWInfoDiva
  • @BusinessWireFR

Like Us on Facebook

  • Business Wire
  • Tradeshow News