[ Date Prev ][ Date Next ][ Thread Prev ][ Thread Next ][ Date Index ][ Thread Index ]

Should be a CVE?



Looking at the following, it appears that a CVE was issued for the
potential that someone might upgrade software to a vulnerable version,
which has another CVE. I don't think this should qualify as a CVE,
given the actual vulnerability already has one.

https://cve.org/CVERecord?id=CVE-2017-5698

Should this CVE be rejected?

Regards,
Dave


Page Last Updated or Reviewed: September 12, 2017