Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Looks like it was a question about where to report it, followed by a handful of suggestions and _then_ the close. I don't see any reason for bad blood from that, especially since there was a bit of follow-on discussion and by the look of it, a fix was released a couple of weeks back.


Yeah, on second read I agree with you. I'm just wondering why the public PoC disclosure before that team had more chance to fix. The arduino-esp8266 folks are super popular in the ESP community.

By my read, the fix is still open in that repo, tracked by the follow-up issue: https://github.com/esp8266/Arduino/issues/6436


These discussions go back well beyond 90 days, which is more than enough time to wait for public disclosure.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: