09ab653ed1851d1212b80672f5a918d0b625d3ef
[homepage.git] / teaching / internships / 14-security-debian-derivatives.mdwn
1 **Title**: *Propagation of security bug fixes among Debian derivatives*
2
3 **Description**: study the propagation delay between the arrival of security
4 bug fixes in the [Debian](http://www.debian.org) distribution and the arrival
5 of the corresponding fixes in
6 [Debian derivatives](https://wiki.debian.org/Derivatives) (i.e., GNU/Linux
7 distributions that are based on/periodically merged with Debian). The work will
8 be conducted processing a large data set of already available
9 [diff](http://en.wikipedia.org/wiki/Diff_utility)-s, which have been obtained
10 by automatically comparing Debian with its derivatives on a daily basis over
11 the past few years.
12
13 **Technologies**:
14
15 - Debian administration (see, e.g., [handbook](http://debian-handbook.info/))
16 - Security standards:
17   - [CVE](https://cve.mitre.org/data/downloads/)
18   - [CPE](http://scap.nist.gov/specifications/cpe/)
19   - [CVRF](http://www.icasi.org/cvrf)
20 - [Debian Security Bug Tracker](https://security-tracker.debian.org/tracker/)
21
22 **More information**:
23
24 - [Debian Derivatives](https://wiki.debian.org/Derivatives)
25 - [Debian Derivatives Census](https://wiki.debian.org/Derivatives/Census)
26 - [sample diff-s](http://dex.alioth.debian.org/census/patches/) (more, and more
27   up-to-date diff-s are available, although not regularly published on the Web)
28
29 **Supervisors**:
30
31 - [Gabriele D'Angelo](http://www.cs.unibo.it/~gdangelo)
32 - [Stefano Zacchiroli](http://upsilon.cc/~zack)
33
34 **Status**: available