Hi! > It's this week's CVE report. > > This week reported 8 new CVEs and 5 updated CVEs. > > CVE-2023-20593 is the Zenbleed vulnerability which is not a kernel > vulnerability. However, the Linux kernel added mitigation code. > CVE-2023-2640 and CVE-2023-32629 are Ubuntu kernel specific > vulnerabilities, so mainline/stable/cip kernels aren't affected. Thank you for the report. > * New CVEs > > CVE-2023-3611: net/sched: sch_qfq: account for stab overhead in qfq_enqueue > > CVSS v3 score is not provided(NVD). > CVSS v3 score is not 7.8 HIGH(CNA). I'm a bit confused. Is this trying to say that score _is_ 7.8? Best regards, Pavel -- DENX Software Engineering GmbH, Managing Director: Erika Unter HRB 165235 Munich, Office: Kirchenstr.5, D-82194 Groebenzell, Germany