Comment by rwmj

5 days ago

For sure, but you don't need to file CVEs for every regular bug.

In the context of the kernel, it’s hard to say when that’s true. It’s very easy to fix some bug that resulted in a kernel crash without considering that it could possibly be part of some complex exploit chain. Basically any bug could be considered a security bug.