Skip to content

Comment on CVE-2021-4440: A Linux CNA Case Study

Comments

Despite existing for a little over four months and in that time assigning over 2000 CVEs at a faster rate than any other CNA in existence, the harm it's single-handedly caused to the CVE ecosystem hasn't been fully appreciated yet by the public and is mostly relegated to security teams of downstream distributions,

Is this related to the fact that the NIST NVD have had a huge backlog of unprocessed CVE:s since February?

https://www.nist.gov/itl/nvd

AboutSource Built by g1lg1l

Hackerly is an independent reader for Hacker News, built on the public HN API. Not affiliated with Y Combinator.