• 2 Posts
  • 53 Comments
Joined 1 year ago
cake
Cake day: June 5th, 2023

help-circle


  • bl4kers@lemmy.mltoAsklemmy@lemmy.mlWhat do you secretly judge people for?
    link
    fedilink
    English
    arrow-up
    3
    arrow-down
    1
    ·
    10 days ago

    I think there’s some misconceptions about this that need to be cleared up. If you don’t want it and you’ve already moved away from the section, the best thing to do is take it to the register and say you don’t want it. Then what typically happens is it gets put in a take-back cart and the employees take care of it



















  • Disputing a CVE is no straightforward task either, as a GitHub security team member explained. It requires a project maintainer to chase the CVE Numbering Authorities (CNA) that had originally issued the CVE.

    CNAs have conventionally comprised NIST’s NVD and MITRE. Over the past few years, technology companies and security vendors joined the list and are also able to issue CVEs at will.

    These seems like an issue worth addressing. If it’s too easy to report and too difficult to dispute, I could see the CVE ecosystem be weaponized and turned into a political tool.