On Mon, Feb 10, 2025 at 10:55:07AM +0100, gregkh@xxxxxxxxxxxxxxxxxxx wrote: > Never link to nvd, their "enhancements" are provably wrong and hurtful > to the kernel ecosystem. Always just refer to cve.org records or better > yet, our own announcements. Thank you for this information, I will take note of it for our next contribution. So the CVE must be under a CNA or CISA score for the patch to be required by the kernel? Where can I find your own announcements? Thanks, Hugo Simeliere