apache / apache/arrow

[C++][Docs] Improve documentation of our security model

Open
#46,218 8 comments 0 reactions 0 assignees View on GitHub
Component: C++ Component: Documentation Type: enhancement
Dominant language
C++
Stars
17.1k
Forks
4.3k
Avg merge
3d 13h
Merged PRs (30d)
88

Description

### Describe the enhancement requested

We should document on our [security page](https://arrow.apache.org/security/) that we do not treat crashes as security issues.
This is in-line with ASF guidelines about documenting our security model: https://cwiki.apache.org/confluence/display/SECURITY/Documenting+your+security+model

We have fixed several problems found by OSS-Fuzz in the past and we have not opened CVE's for those.

### Component(s)

Documentation

Contributor guide

Open the contributing guide

Assessment

This issue has not been assessed yet.

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.