[C++][Docs] Improve documentation of our security model
Open
Component: C++
Component: Documentation
Type: enhancement
- Dominant language
- C++
- Stars
- 17.1k
- Forks
- 4.3k
- Avg merge
- 3d 13h
- Merged PRs (30d)
- 88
Description
### Describe the enhancement requested
We should document on our [security page](https://arrow.apache.org/security/) that we do not treat crashes as security issues.
This is in-line with ASF guidelines about documenting our security model: https://cwiki.apache.org/confluence/display/SECURITY/Documenting+your+security+model
We have fixed several problems found by OSS-Fuzz in the past and we have not opened CVE's for those.
### Component(s)
Documentation
Contributor guide
Assessment
This issue has not been assessed yet.