Re: [pcre2-dev] request contact for vulnerability report

38 views
Skip to first unread message

Philip Hazel

unread,
Feb 22, 2024, 11:32:18 AM2/22/24
to JEON Se-Ok, PCRE2 discussion list
PCRE2 is currently maintained by a very small, informal group of people. There is no specific security contact, but you can send me encrypted email. My GPG public key is available through key servers such as keyserver.ubuntu.com and others.

Regards,
Philip


On Thu, 22 Feb 2024 at 13:24, JEON Se-Ok <seokj...@gmail.com> wrote:
Hello,

I'm reaching out to inquire about the security contact information for discussing a potential issue I've encountered, which seems to lead to a crash.
If there's someone familiar with the vulnerability management process for this project, I'd greatly appreciate your guidance.

Should there be no designated contact, I recommend utilizing GitHub Security Advisories (GHSA). GHSA offers a secure means of collaboration through private issues or forks with the repository maintainers or a dedicated vulnerability management team.

Thank you for your attention to this matter.

Best regards,

JEON Se-Ok

--
You received this message because you are subscribed to the Google Groups "PCRE2 discussion list" group.
To unsubscribe from this group and stop receiving emails from it, send an email to pcre2-dev+...@googlegroups.com.
To view this discussion on the web visit https://groups.google.com/d/msgid/pcre2-dev/a983c5ff-1cfa-4df9-9ca7-f5a490679e78n%40googlegroups.com.
Reply all
Reply to author
Forward
0 new messages