Skip to content

Comment on CVE-2021-4440: A Linux CNA Case Studyparent

Comments

To me it sounds plausible that the design goal of the Linux CNA is to show that CVEs don't meaningfully apply to the Linux kernel.

I think it's hostile in nature. The core kernel devs have a horrible attitude toward security vulnerabilities.

Yes, my original wording was "to make the CVE system burn", but that got lost during my tone-down edits.

AboutSource Built by g1lg1l

Hackerly is an independent reader for Hacker News, built on the public HN API. Not affiliated with Y Combinator.