cisagov / vulnrichment

A repo to conduct vulnerability enrichment.
Creative Commons Zero v1.0 Universal
406 stars 29 forks source link

Update CVE-2023-43526.json to reflect the chipset vulnerability as hardware #26

Closed patrickmgarrity closed 1 month ago

patrickmgarrity commented 1 month ago

It appears that several qualcomm chipset CVEs need to be recategorized to "h" - hardware from "a" - application.

I fixed this one for an example.

jwoytek-cisa commented 1 month ago

@patrickmgarrity thank you for finding this. There are a few CPE issues with this record and I've referred them up to our analysts to review. I'm going to accept this PR but expect that there will be a number of changes to this record once things are fixed upstream.