Friendica
daniel:// stenberg://
daniel:// stenberg://

daniel:// stenberg://

bagder@mastodon.social

daniel:// stenberg://

bagder@mastodon.social
I write curl. I don't know anything.
ActivityPub
2023-04-13 22:22:22 2023-04-13 15:52:37 2023-04-13 15:52:35 3030479

daniel:// stenberg://
daniel:// stenberg://
mastodon - Link to source

daniel:// stenberg://

2 years ago • •

daniel:// stenberg://

2 years ago • •


Again NVD lists the wrong info for a #curl advisory in nvd.nist.gov/vuln/detail/CVE-2… which now has the ripple effect that #Debian also lists the wrong versions as affected, in security-tracker.debian.org/tr…

I wish more orgs just read our canonical sources instead.

CVE-2023-27538

security-tracker.debian.org
#debian #curl
This entry was edited (2 years ago)
  •  Languages
  •  Search Text
  •  Share via ...
in reply to daniel:// stenberg://

daniel:// stenberg://
mastodon - Link to source

daniel:// stenberg://

in reply to daniel:// stenberg:// • 2 years ago • •
I've complained at NVD, I've submitted an update request of the CVE metadata to MITRE. What a broken system this is.
  •  Languages
  •  Search Text
  •  Share via ...
in reply to daniel:// stenberg://

daniel:// stenberg://
mastodon - Link to source

daniel:// stenberg://

in reply to daniel:// stenberg:// • 2 years ago • •
someone, somewhere, obviously just manually edited the description that we provided for this flaw, and that manual edit was incorrect and inserted this error into the text.
  •  Languages
  •  Search Text
  •  Share via ...
Unknown parent

daniel:// stenberg://
mastodon - Link to source

daniel:// stenberg://

Unknown parent • 2 years ago • •
@beekir yet we somehow fool ourselves into believing we have systems nowadays to better handle these things...
  •  Languages
  •  Search Text
  •  Share via ...
⇧