Draft "bundled" tag - #491
Conversation
Draft to add a "bundled" tag conveying that a CVE ID and Record identify multiple vulnerabilities.
There was a problem hiding this comment.
This was done in some haste to demonstrate that adding a tag is technically simple during a CVE Board meeting. Might choose a different word or definition. Add to adp-tags also. May also want a corresponding URL reference type tag. Either the CNA or the Program ADP can set these.
There was a problem hiding this comment.
Slightly revised text, added "bundled" tag to ADP and reference tags. Also removed an outdated reference to a FIRST.org list of public VDBs.
There was a problem hiding this comment.
This should probably cause a non-breaking schema version bump, I don't see where to record this, probably the schema itself should contain it's version?
Also remove dated FIRST.org VDP reference.
|
Are bundled advisories counter to the stated goal of the cve program?
https://www.cve.org/About/Overview The sentence |
Draft to add a "bundled" tag conveying that a CVE ID and Record identify multiple vulnerabilities.