Re: Should Debian ask for a CPE when a CVE in Debian is found?

2024-12-01 Thread David A. Wheeler
> On Feb 12, 2016, at 12:50 PM, Booth, Harold wrote: > > We welcome and encourage participation from any vendor to provide us with > this information. We will be happy to work with Debian to accept their CPE > submissions for products that they release. What would help you to get > started?

Re: security-tracker: A proposal to significantly reduce reported false-positives (no affected-code shipped)

2024-12-01 Thread Salvatore Bonaccorso
Hi Samuel, On Wed, Nov 27, 2024 at 11:28:50PM +, Samuel Henrique wrote: > Hello Salvatore, > > On Sat, 2 Nov 2024 at 20:02, Samuel Henrique wrote: > > On Tue, 29 Oct 2024 at 19:43, Salvatore Bonaccorso > > wrote: > > > As mentioned in an earlier message: What I would love to see is to > >