Alex Gaynor 10/19/2013

Security process for Open Source Projects

Read Original

This article details a structured process for handling security vulnerabilities in open source projects, inspired by Django and PostgreSQL. It covers establishing a secure reporting channel, obtaining CVEs, coordinating with downstream packagers, and executing a responsible, time-bound release to protect users before public disclosure.

Security process for Open Source Projects

Comments

No comments yet

Be the first to share your thoughts!

Browser Extension

Get instant access to AllDevBlogs from your browser

Top of the Week