security vulnerability disclosure procedure?
From: Richard Hansen <hidden>
Date: 2016-06-15 23:00:45
Hi all, I have discovered a minor security vulnerability. I could send the patch to the mailing list, but I wanted someone else to take a look first just to make sure it's minor enough that folks will think it's OK to publicly announce. Who should I send the patch to? Thanks, Richard