Follow @Openwall on Twitter for new release announcements and other news
[<prev] [next>] [<thread-prev] [day] [month] [year] [list]
Message-ID: <CAApg2=Tc3N=pU6hO=1PnUuN_fbkTK1Ay6TwZmtShs8qoHi=NwA@mail.gmail.com>
Date: Thu, 18 Jun 2026 12:55:05 +0200
From: Marta Rybczynska <rybczynska@...il.com>
To: oss-security@...ts.openwall.com
Cc: Lucas Holt <luke@...lishgames.com>
Subject: Re: How to request CVE numbers?

On Thu, 11 Jun 2026, 01:41 Hauke Mehrtens, <hauke@...ke-m.de> wrote:

> On 6/10/26 16:14, Lucas Holt wrote:
> > On 6/10/26 8:52 AM, Christian Brabandt wrote:
> >> Agree, but they seemed to be swamped by CVE requests for the last couple
> >> of months. I have been waiting for up to 3 weeks on the final CVE
> >> assignment.
> >>
> > I've also had delays getting them, but  consider all the AI related
> > reports.  We submitted 13 requests for mport package manager recently.
> >
> >
> > Lucas Holt
> > Luke@...lishGames.com
> > ________________________________________________________
> > MidnightBSD.org (Free OS)
> > JustJournal.com (Free blogging)
> >
> Thank you all for the help.
>
> We requested CVE numbers on github about 1 week ago here:
> https://github.com/openwrt/odhcpd/security/advisories/
>
> We will probably patch the vulnerabilities and also publish them before
> we have CVE numbers assigned and just update the advisory later.
>

Hello Hauke,
I'm operating a CNA (Ygreky) that can assign to projects that do not have
any other. Contact vulns@...eky.com if interested. No fees or any
conditions for open source.

Kind regards,
Marta

>

Powered by blists - more mailing lists

Please check out the Open Source Software Security Wiki, which is counterpart to this mailing list.

Confused about mailing lists and their use? Read about mailing lists on Wikipedia and check out these guidelines on proper formatting of your messages.