[C++][Docs] Improve documentation of our security model

Open Beginner friendly
#46,218 8 comments 0 reactions 0 assignees View on GitHub

Nobody has claimed this yet.

Assessment

Difficulty
1/5
Estimated time
1-3 hours
Newbie friendliness
72/100
Issue type
Documentation
Clarity
Clearly specified
Activity status
Quiet
Tech stack
cpp

Research direction

Start with the security page linked in the issue and compare its current wording with the ASF guidelines for documenting a security model. Update the page to state that crashes are not treated as security issues; done means the security model clearly reflects this policy.

Written by the indexing model from the issue text.

Description

Component: C++ Component: Documentation Type: enhancement
Describe the enhancement requested

We should document on our security page that we do not treat crashes as security issues.
This is in-line with ASF guidelines about documenting our security model: https://cwiki.apache.org/confluence/display/SECURITY/Documenting+your+security+model

We have fixed several problems found by OSS-Fuzz in the past and we have not opened CVE's for those.

Component(s)

Documentation

Dominant language
C++
Stars
17.1k
Forks
4.3k
Avg merge
3d 13h
Merged PRs (30d)
93

Contributor guide

Open the contributing guide

First steps

  1. Read the whole issue, then the project's contributing guide.
  2. Comment on the issue to say you are picking it up — it saves two people doing the same work.
  3. Fork the repository and make your change on a branch.
  4. Open a pull request that references the issue number.

More from apache/arrow

All issues in apache/arrow

Similar issues

More C++ issues

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.