From: Prasad J Pandit <pjp@fedoraproject.org>
Hello,
* After upstream discussions and considering various options like
LaunchPad bugs, GitLab issues etc.
-> https://lists.nongnu.org/archive/html/qemu-devel/2020-09/msg04266.html
-> https://lists.nongnu.org/archive/html/qemu-devel/2020-10/msg00059.html
We are about to introduce a 'qemu-security' mailing list to receive and
triage upstream QEMU security issues.
* Intention is to allow more community participation in handling and
triaging of the QEMU security issues.
* This change relieves current set of individual contacts from the
responsibility of handling upstream QEMU issues. Of course they are
welcome to the new 'qemu-security' mailing list.
* To simplify the encrypted communication process, we keep only a single
contact of <secalert@redhat.com> from our previous list of contacts.
This way reporters need not look for and manage GPG keys of multiple
contacts.
* This patch updates the QEMU security-process web page with these
details.
I'd appreciate if you have any inputs and/or suggestions for this change.
Thank you.
--
Prasad J Pandit (1):
security-process: update process information
contribute/security-process.md | 105 +++++++++++++++++----------------
1 file changed, 55 insertions(+), 50 deletions(-)
--
2.28.0