From http://thehill.com/policy/cybersecur...ource-software
And, from the letter sent to The Linux Foundation:
“Companies like Microsoft, Adobe, or Apple have the processes and procedures in place to quickly address these vulnerabilities, and—more importantly—the time and funding to do so,” the lawmakers wrote Monday. “This is not always the case for OSS vulnerabilities, as OSS creators or maintainers may be globally-located volunteers, who often have unrelated full-time employment and may be uncompensated for their OSS work.”
Comment