Linked by Thom Holwerda on Fri 16th Mar 2007 17:02 UTC, submitted by Shawna McAlearney
Permalink for comment 221968
To read all comments associated with this story, please click here.
To read all comments associated with this story, please click here.





Member since:
2005-09-21
Indeed, the Vista score is a bit misleading to say the least. Vista wasn't released to the general public at all during the period he is examining. And no competent business will have deployed Vista anywhere but in testing in that period either. So it is quite natural that it has had no fixes.
However, it is not biased to not include pre-SP2 XP. SP2 has been out for years, and everyone at all concerned with security should be running it by now. Just like he didn't include old version of Linux in his comparison.
Then again, these numbers don't mean much if you keep your systems up to date. I will be very interested to see his data on non-fixed problems and time to fix. Much more relevant to determining security than fixed issues.
Another addition that would help the credibility of this piece is a detailed view where the vulnerabilities are listed, broken down by component.
Edited 2007-03-16 18:23