File: SECURITY.md

package info (click to toggle)
libavif 1.4.0-2
  • links: PTS, VCS
  • area: main
  • in suites:
  • size: 21,488 kB
  • sloc: ansic: 30,721; cpp: 14,588; xml: 1,507; sh: 1,258; java: 307; makefile: 57
file content (16 lines) | stat: -rw-r--r-- 686 bytes parent folder | download | duplicates (11)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
# Security Policy

If you have discovered a security vulnerability in this project, please report it
privately. **Do not disclose it as a public issue.** This gives us time to work with you
to fix the issue before public exposure, reducing the chance that the exploit will be
used before a patch is released.

Please submit the report through [here](https://github.com/AOMediaCodec/libavif/security/advisories/new).

Please provide the following information in your report:

- Which version you're using
- How to reproduce the issue
- A description of the vulnerability and its impact (optional but appreciated)

We ask that you give us 90 days to work on a fix before public exposure.