Skip to content

GitLab

  • Menu
Projects Groups Snippets
    • Loading...
  • Help
    • Help
    • Support
    • Community forum
    • Submit feedback
    • Contribute to GitLab
  • Sign in / Register
  • BIND BIND
  • Project information
    • Project information
    • Activity
    • Labels
    • Planning hierarchy
    • Members
  • Repository
    • Repository
    • Files
    • Commits
    • Branches
    • Tags
    • Contributors
    • Graph
    • Compare
  • Issues 522
    • Issues 522
    • List
    • Boards
    • Service Desk
    • Milestones
  • Merge requests 99
    • Merge requests 99
  • CI/CD
    • CI/CD
    • Pipelines
    • Jobs
    • Schedules
  • Deployments
    • Deployments
    • Environments
    • Releases
  • Monitor
    • Monitor
    • Incidents
  • Packages & Registries
    • Packages & Registries
    • Container Registry
  • Analytics
    • Analytics
    • Value stream
    • CI/CD
    • Repository
  • Wiki
    • Wiki
  • Snippets
    • Snippets
  • Activity
  • Graph
  • Create a new issue
  • Jobs
  • Commits
  • Issue Boards
Collapse sidebar
  • ISC Open Source Projects
  • BINDBIND
  • Merge requests
  • !5017

Merged
Created May 13, 2021 by Michał Kępień@michalOwner

Tweak security incident handling checklists

  • Overview 1
  • Commits 1
  • Pipelines 2
  • Changes 2

Add an item to the CVE issue template which calls for drafting the security advisory early in the security incident handling process. The intention is to ensure there is enough time to review and polish ISC security advisories before they get published.

Tweak the release checklist to make sure we carefully consider all confidential issues before opening them up to the public. This change is intended as a safeguard against accidentally disclosing too much information about a security vulnerability before our users get a chance to patch it.

Assignee
Assign to
Reviewer
Request review from
Time tracking
Source branch: michal/tweak-cve-handling-checklists