Dear Maintainer, There is a list of unreported issues in the Debian Security-tracker: https://security-tracker.debian.org/tracker/status/unreported This issue was the first one in the tracker which led me to file this issue in Debian's bug tracking system. Regards, Jeremiah
Hi Jeremiah, Thank you. It's usually not necessary to fill bugs for CVEs for src:linux, we are already tracking them and are aware. In the particular case you can look up CVE-2013-7445 and it's unlikely that it will be addressed. Furthermore CVEs for linux are specifically tracked in the kernel-team as well. It's not necessary to fill bugs for CVE for src:linux, we already track them, so this would just cause some unnecessary overhead (in particular for such on old CVE ;-)). Regards, Salvatore
Hi Salvatore, Thank you for your reply. Sorry for the noise. What about the other CVEs in the unreported list? (https://security-tracker.debian.org/tracker/status/unreported) Is it worthwhile to try to get them reported? Or is this a low priority because they've already been triaged? Thanks again, Jeremiah