ToolsThe story, in brief

IBM and Red Hat report hundreds of open source fixes with Lightwell Clearinghouse scheme

IBM and Red Hat's Lightwell Clearinghouse is now GA — a priority-remediation scheme for open source vulnerabilities affecting enterprise stacks.

Paper-cut illustration of a coral software window opening into a three-dimensional drafting space.
New tools for building and creating with AI.AI illustration by KeyNews
The KeyNews take

Why it matters

Lightwell Clearinghouse offers firms a mechanism to request expedited security reviews and fixes for open source dependencies. For enterprises managing large dependency trees, this addresses a real bottleneck: waiting for community maintainers to patch critical vulnerabilities. The catch: no pricing, SLA, or coverage criteria disclosed; unclear whether this scales beyond 'hundreds of fixes' or prioritizes enterprise customers.

The key facts

11 to know
  1. Lightwell Clearinghouse now generally available (GA)

  2. Allows firms to request priority review and remediations for open source software

  3. IBM and Red Hat backing

  4. Hundreds of open source fixes reported

  5. No SLA, pricing model, or coverage guarantee disclosed

  6. No independent verification of remediation speed or breadth

  7. Lightwell Clearinghouse now generally available (GA status confirmed)

  8. Hundreds of open-source security fixes reported through the program

  9. Firms can request priority review and remediation for open-source software

  10. IBM and Red Hat joint initiative

  11. Focus on supply-chain security and open-source maintenance

Go to the source

ITProitpro.com

Publisher excerpt: Lightwell Clearinghouse is now generally available, allowing firms to request priority review and remediations for open source software
Read original report
Back to today's editionMore tools news

Keep reading

Related stories

More from Tools