Pwnie Awards 2017

The 2007 Pwnie Award For Lamest Vendor Response

CVE-2007-1365

OpenBSD team

The OpenBSD team refused to acknowledge the bug as a security vulnerability and issued a “reliability fix” for it. A week later Core Security had developed proof of concept code that demonstrated remote code execution. Read the full timeline and quotes in the Core advisory.