security:policy
Differences
This shows you the differences between two versions of the page.
Next revision | Previous revision | ||
security:policy [2019/02/10 19:00] – created henningw | security:policy [2020/09/03 07:07] (current) – henningw | ||
---|---|---|---|
Line 22: | Line 22: | ||
=== Publishing security vulnerabilities === | === Publishing security vulnerabilities === | ||
- | Kamailio will publish security vulnerabilities, | + | Kamailio will publish security vulnerabilities, |
- | CVE entries should be created for vulnerabilities in the core and major modules, for rarely used modules this is not necessary. If there are several security issues together in one release, they should be announced together. | + | CVE entries should be created for critical |
The Kamailio project release security fixed in the normal time based maintenance schedule, no immediate security releases are done. If possible a non-code workaround should be provided for the found security vulnerability. | The Kamailio project release security fixed in the normal time based maintenance schedule, no immediate security releases are done. If possible a non-code workaround should be provided for the found security vulnerability. |
security/policy.1549825215.txt.gz · Last modified: 2019/02/10 19:00 by henningw