This is the mail archive of the
newlib@sourceware.org
mailing list for the newlib project.
CNA and security contact point
- From: Dimitrios Glynos <dimitris at census-labs dot com>
- To: newlib at sourceware dot org
- Date: Fri, 20 Sep 2019 16:24:39 +0300
- Subject: CNA and security contact point
Hello all,
for security vulnerabilities identified in newlib is RedHat acting
as the CNA to generate CVE identifiers, or should we request
these from the root CNA at MITRE?
Also what's the preferred contact point (email address) for disclosing
vulnerabilities?
Cheers,
Dimitris