Hello ORC community,
This week Wednesday, Sept 24th 14:00-16:00 CEST, CEN/CENELEC JTC13 WG9 PT3 will discuss open source related comments on PT3’s draft standard on vulnerability handling.
CEN/CENELEC WG is responsible for developing the three so called horizontal standards for the CRA.
Some of you may remember ORC community worked earlier this year to provide
text to the said
draft standard on open source and open source software steward, but it was eventually decided to be removed, as it was mostly rewording of the CRA text.
PT3 collected comments to their draft standard during the summer months, and there are quite some comments addressing open source – or lack thereof – in the draft. You may recall the related discussion we had in our SIG call a week ago (
minutes),
and that Æva has joined the ORC WG staff for address Vulnerability handling, together with Marta and Mika.
Thanks to Æva’s action PT3 is now dedicating their Wed afternoon session to discuss open source comments and concrete proposals to address those comments.
I would like to suggest those in our community who have access to PT3 to make an effort to attend the session on Wednesday to support proper handling of open source topic in the draft vulnerability handling standard.
It is indeed unfortunate that these meetings are not open for all interested. I am sure those who have access to the meeting have or can find the logistics information needed.
cheers
Timo
WG co-chair