Re: [dpdk-dev] [oss-security] DPDK security advisory for multiple vhost crypto issues

2021-01-04 Thread Mauro Matteo Cascella
On Mon, Jan 4, 2021 at 12:29 PM Ferruh Yigit wrote: > > On 1/4/2021 8:28 AM, Mauro Matteo Cascella wrote: > > Hello, > > > > Is there any particular reason for the Scope metric to be Unchanged > > (S:U) for CVE-2020-14377 and CVE-2020-14378? > > > > removed dpdk-announce mail list > > Hi Mauro, >

Re: [dpdk-dev] [oss-security] DPDK security advisory for multiple vhost crypto issues

2021-01-04 Thread Ferruh Yigit
On 1/4/2021 8:28 AM, Mauro Matteo Cascella wrote: Hello, Is there any particular reason for the Scope metric to be Unchanged (S:U) for CVE-2020-14377 and CVE-2020-14378? removed dpdk-announce mail list Hi Mauro, CVE-2020-14377, the memory over read is in the scope of the same application,

Re: [dpdk-dev] [oss-security] DPDK security advisory for multiple vhost crypto issues

2021-01-04 Thread Mauro Matteo Cascella
Hello, Is there any particular reason for the Scope metric to be Unchanged (S:U) for CVE-2020-14377 and CVE-2020-14378? Thank you, On Mon, Sep 28, 2020 at 5:43 PM Ferruh Yigit wrote: > > A set of vulnerabilities are fixed in DPDK: > - CVE-2020-14374 > - CVE-2020-14375 > - CVE-2020-14376 > - CVE