]> xenbits.xensource.com Git - people/iwj/security-process.git/commit
Explicitly permit within-list information sharing during embargo
authorIan Jackson <ijackson@chiark.greenend.org.uk>
Fri, 16 Jan 2015 19:51:11 +0000 (19:51 +0000)
committerIan Jackson <Ian.Jackson@eu.citrix.com>
Mon, 19 Jan 2015 17:53:39 +0000 (17:53 +0000)
commit2ac7f66499801401ebc87e2af4e5fcf5932b4b60
tree95b4acfa4010348c07cd6058d2740e7a47747d88
parent82ff8908ebed186b314b0159db4b2faad615f47b
Explicitly permit within-list information sharing during embargo

Permitting sharing of embargoed fixes amongst predisclosure list
seemed to have appropriate consensus.

IMPLEMENTATION TASKS:
 * Send a notification to the existing predisclosure list members
   informing them that they have been subscribed to the new list.
   Notice should point them to the policy section on filtering
   by List-Id, and offer to unsubscribe them from both lists if
   they prefer.
 * Create the new mailing list, and
   - check that it can be emailed from outside
   - that messages are held for moderation and can be approved

Signed-off-by: Ian Jackson <ijackson@chiark.greenend.org.uk>
Signed-off-by: Ian Jackson <Ian.Jackson@eu.citrix.com>
---
v2: Obfuscate -discuss@ list's full email address with <dot>
    and <span>.
security_vulnerability_process.html