Add security policy

Requires 'Private vulnerability reporting' be enabled on GitHub
This commit is contained in:
Callum Farmer 2024-09-06 16:42:53 +01:00
parent dfc27f3416
commit 68101114ce
No known key found for this signature in database
GPG Key ID: 9A5B19E18CD0013C

18
SECURITY.md Normal file
View File

@ -0,0 +1,18 @@
# Security Policy
## Supported Versions
| Version | Supported |
| ------- | ------------------ |
| 4.0.x | :white_check_mark: |
| 3.0.x | :x: |
| 3.0a | :x: |
## Reporting a Vulnerability
Please provide:
1. Details of how the EFI binary was produced
2. Where the vulnerability is found in gnu-efi's source code (if known)
3. Steps to (re-)produce the vulnerability
[Report here](https://github.com/ncroxon/gnu-efi/security/advisories/new)