Attached is the CVE Board actions items and list of Agenda items for tomorrow's meeting at 9:00am EDT CVE Board Agenda 09:00-09:05: Introductions and Roll Call 09:05-10:35: Open discussion items in no specific order (see attached excel file) 10:35-10:55: Review of Action items (see attached excel file) 10:55-11:00: Wrap up See you then! |
On 2020-11-02 21:00, Jo E Bazar wrote:
> 09:05-10:35: Open discussion items in no specific order (see attached excel file) I'd like to add an item, if we don't get to it this meeting then please add it to the queue. Are gaps or "vulnerabilities" in security compliance/process standards in scope for CVE? https://josiahdykstra.com/wp-content/uploads/2020/02/NDSS2020_Compliance_Cautions.pdf Technical standards (like protocol RFCs and crypto specs) *are* in scope, this is a different abstraction, basically seeking to identify specific gaps or problems with security compliance standards. I don't have a strong opinion either way, but want to bring the question up to the Board (or perhaps an appropriate WG). Regards, - Art |