Thursday, 2026-06-18

*** rosmaita1 is now known as rosmaita12:01
fungiper comment on bug 2152240, someone assigned cve-2026-55748 to ossn-009720:35
fungi"NOTE: some parties consider this a security hardening opportunity to address certain types of user error, not a vulnerability." (from the cve description field)20:37
gouthamrah20:40
gouthamri can edit the OSSN and publish an errata 20:40
fungii probably wouldn't bother distributing errata (though we can if you like), but mentioning the assignment in the ossn may at least help dissuade duplicate assignments20:42
gouthamryes20:43
gouthamrthis should only be to openstack lists though? i'd like to.. 20:43
fungisure, wherever you like, we don't really have much established process around ossn edits20:44
gouthamr++20:46
opendevreviewGoutham Pacha Ravi proposed openstack/security-doc master: OSSN-0097: Add CVE reference  https://review.opendev.org/c/openstack/security-doc/+/99400220:48
opendevreviewGoutham Pacha Ravi proposed openstack/security-doc master: OSSN-0097: Add CVE reference  https://review.opendev.org/c/openstack/security-doc/+/99400220:53
fungigouthamr: out of curiosity, how did you determine which cna assigned that cve?21:05
gouthamri googled the guy :P but, its a guess21:05
gouthamrmaybe zigo can confirm21:05
fungioh, i mean i know carnil is active on dsa but he didn't say where he saw the cve assignment21:07
gouthamrtrue, that's not even necessary detail 21:07
gouthamrlet me edit the commit message21:07
opendevreviewGoutham Pacha Ravi proposed openstack/security-doc master: OSSN-0097: Add CVE reference  https://review.opendev.org/c/openstack/security-doc/+/99400221:08
opendevreviewMerged openstack/security-doc master: OSSN-0097: Add CVE reference  https://review.opendev.org/c/openstack/security-doc/+/99400221:16
gouthamrty fungi 21:17
fungiof course!21:19
gouthamrsent emails now21:19

Generated by irclog2html.py 4.1.0 by Marius Gedminas - find it at https://mg.pov.lt/irclog2html/!