aboutsummaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authorJia Tan <jiat0218@gmail.com>2024-03-26 01:50:02 +0800
committerJia Tan <jiat0218@gmail.com>2024-03-26 03:38:12 +0800
commitaf071ef7702debef4f1d324616a0137a5001c14c (patch)
tree490e3697cd33975d7d00713e92242d7380f91429
parentliblzma: memcmplen.h: Add a comment why subtraction is used. (diff)
downloadxz-af071ef7702debef4f1d324616a0137a5001c14c.tar.xz
Docs: Simplify SECURITY.md.
-rw-r--r--.github/SECURITY.md8
1 files changed, 1 insertions, 7 deletions
diff --git a/.github/SECURITY.md b/.github/SECURITY.md
index e9b3458a..9ddfe8e9 100644
--- a/.github/SECURITY.md
+++ b/.github/SECURITY.md
@@ -16,13 +16,7 @@ the chance that the exploit will be used before a patch is released.
You may submit a report by emailing us at
[xz@tukaani.org](mailto:xz@tukaani.org), or through
[Security Advisories](https://github.com/tukaani-project/xz/security/advisories/new).
-While both options are available, we prefer email. In any case, please
-provide a clear description of the vulnerability including:
-
-- Affected versions of XZ Utils
-- Estimated severity (low, moderate, high, critical)
-- Steps to recreate the vulnerability
-- All relevant files (core dumps, build logs, input files, etc.)
+While both options are available, we prefer email.
This project is maintained by a team of volunteers on a reasonable-effort
basis. As such, please give us 90 days to work on a fix before