From: Ian Jackson Date: Fri, 16 Jan 2015 19:51:26 +0000 (+0000) Subject: Document changes in changelog and heading X-Git-Url: http://xenbits.xensource.com/gitweb?a=commitdiff_plain;h=refs%2Fheads%2Frebasing;p=people%2Fiwj%2Fsecurity-process.git Document changes in changelog and heading IMPLEMENTATION TASKS: * Assign last change date to be approval date * Reformat html to web page CMS format * Update web page Signed-off-by: Ian Jackson Signed-off-by: Ian Jackson --- diff --git a/security_vulnerability_process.html b/security_vulnerability_process.html index 3b9c1ba..9ca7622 100644 --- a/security_vulnerability_process.html +++ b/security_vulnerability_process.html @@ -1,6 +1,6 @@

This document has come in effect in December 2011 and will be reviewed periodically (see revision sections). The last modification -has been made in October 2014.

+has been made in (approval date tbd).

Introduction

Computer systems have bugs. Currently recognised best practice for bugs with security implications is to notify significant downstream @@ -385,6 +385,8 @@ email addresses or internal business groups).

Change History

    +
  • v3.0 (approval date TBD): New predisclosure list application + process and information-sharing and -handling rules; and, minor clarifications.
  • v2.7 Oct 21st 2014: Added the following vendors to the pre-disclosure list: OnePoundWebHosting Ltd, File Sanctuary, iWeb Technologies Inc., Memset