Welcome to Admin Junkies, Guest — join our community!

Register or log in to explore all our content and services for free on Admin Junkies.

Curl CVE insanity

Surely the idea that a software vendor can become a CNA, and effectively block anyone else from assigning CVEs to their products, is... not great? There's an obvious conflict of interest if (for example) Adobe is the only outfit which can issue CVEs for Adobe software, and they choose to downplay security issues.
 
Well, for me, the crazy part of all that is the fact that they assigned such a high priority to something that has very minor implications to a package that is used by so many other vendors. Especially since it was addressed so long ago originally. It's a huge issue that can have real world ramifications for other software.
 

Log in or register to unlock full forum benefits!

Log in or register to unlock full forum benefits!

Register

Register on Admin Junkies completely free.

Register now
Log in

If you have an account, please log in

Log in
Activity
So far there's no one here

Users who are viewing this thread

Would You Rather #9

  • Start a forum in a popular but highly competitive niche

    Votes: 5 21.7%
  • Initiate a forum within a limited-known niche with zero competition

    Votes: 18 78.3%
Win this space by entering the Website of The Month Contest

Theme editor

Theme customizations

Graphic Backgrounds

Granite Backgrounds