CVE-2015-7547 Public Announcement ETA for NIST database Inclusion
mark mark
mark74193@gmail.com
Thu Feb 18 06:14:00 GMT 2016
Hello,
Since the vulnerability was disclosed, my company has already began
patching affected servers. We've almost had that completed and the
only show stoppers are the linux-based network devices that are
vulnerable as per the vendor. We were told by our vendor that they
will not initiate the patch development until the vulnerability is in
the NIST database. When I checked the status this morning, the CVE
still says "Reserved" in MITRE hence it has not made it to the NIST
yet. My question is, given the significance of this issue in terms of
threat level, do you guys have any ETA on the formal announcement?
Thank you
- Mark A
More information about the Libc-alpha
mailing list