CA/Vulnerability Disclosure: Difference between revisions

Jump to navigation Jump to search
(→‎How to Disclose a Reportable Vulnerability: Added notice about other root stores.)
(→‎How to Disclose a Reportable Vulnerability: Added warning about cc: list)
Line 33: Line 33:
[[File:CA-Security-Bug.png|300px]]
[[File:CA-Security-Bug.png|300px]]


Ensure that you report security incidents to other root stores as well. Mozilla may share information with other root store representatives and add them to the cc: list with access to review and comment on such disclosures made in Bugzilla.
Ensure that you report security incidents to other root stores as well. Mozilla may share information with other root store representatives and add them to the cc: list with access to review and comment on such disclosures made in Bugzilla. (People cc:'ed in the bug have access to view the bug, so review the cc: list to ensure that no unintended people are in that list.)
Also,


=== Types of Vulnerabilities/Incidents to be disclosed ===
=== Types of Vulnerabilities/Incidents to be disclosed ===
Confirmed users
569

edits

Navigation menu