On Mon, Feb 10, 2025 at 10:55:07AM +0100, gregkh@linuxfoundation.org wrote:
Never link to nvd, their "enhancements" are provably wrong and hurtful to the kernel ecosystem. Always just refer to cve.org records or better yet, our own announcements.
Thank you for this information, I will take note of it for our next contribution. So the CVE must be under a CNA or CISA score for the patch to be required by the kernel? Where can I find your own announcements?
Thanks, Hugo Simeliere