oss-sec mailing list archives
Re: CVE-2025-40300 / VMScape
From: Bjoern Franke <bjo () schafweide org>
Date: Mon, 17 Nov 2025 14:14:40 +0100
Hi Alan,
The CPU vendors have their own methods for alerting OS & Hypervisor makers of CPU-level security issues in advance of publication, that don't flow through the distros lists or this list, so fixes for those often happen without any notice here. For other CVEs, it really depends on whether the project includes this list in their notification process, or some volunteer notices them and forwards the information to the list. Many still slip through the cracks.
Thanks for your explanation! Regards Bjoern
Current thread:
- CVE-2025-40300 / VMScape Bjoern Franke (Nov 13)
- Re: CVE-2025-40300 / VMScape Alan Coopersmith (Nov 14)
- Re: CVE-2025-40300 / VMScape Moritz Mühlenhoff (Nov 14)
- Re: CVE-2025-40300 / VMScape Solar Designer (Nov 17)
- Re: CVE-2025-40300 / VMScape Bjoern Franke (Nov 17)
- Re: CVE-2025-40300 / VMScape Moritz Mühlenhoff (Nov 14)
- Re: CVE-2025-40300 / VMScape Alan Coopersmith (Nov 14)
