RFC: Adding a SECURITY.md document to the Binutils

John Baldwin jhb@FreeBSD.org
Mon Apr 10 18:30:42 GMT 2023


On 4/7/23 1:42 AM, Nick Clifton via Gdb wrote:
> Reporting private security bugs
> ===============================
> 
>     *All bugs reported in the Binutils Bugzilla are public.*
> 
>     In order to report a private security bug that is not immediately
>     public, please contact one of the downstream distributions with
>     security teams.  The follow teams have volunteered to handle such
>     bugs:

One nit: s/follow/following/ I think

The overall policy for binutils seems sane to me btw (with my OS vendor
hat on)

-- 
John Baldwin



More information about the Gdb mailing list