xref: /optee_os/lib/libmbedtls/mbedtls/SECURITY.md (revision 039e02df2716a0ed886b56e1e07b7ac1d8597228)
17901324dSJerome Forissier## Reporting Vulneratibilities
27901324dSJerome Forissier
37901324dSJerome ForissierIf you think you have found an Mbed TLS security vulnerability, then please
47901324dSJerome Forissiersend an email to the security team at
57901324dSJerome Forissier<mbed-tls-security@lists.trustedfirmware.org>.
67901324dSJerome Forissier
77901324dSJerome Forissier## Security Incident Handling Process
87901324dSJerome Forissier
9*039e02dfSJerome ForissierOur security process is detailed in our
107901324dSJerome Forissier[security
117901324dSJerome Forissiercenter](https://developer.trustedfirmware.org/w/mbed-tls/security-center/).
127901324dSJerome Forissier
137901324dSJerome ForissierIts primary goal is to ensure fixes are ready to be deployed when the issue
147901324dSJerome Forissiergoes public.
157901324dSJerome Forissier
167901324dSJerome Forissier## Maintained branches
177901324dSJerome Forissier
187901324dSJerome ForissierOnly the maintained branches, as listed in [`BRANCHES.md`](BRANCHES.md),
197901324dSJerome Forissierget security fixes.
207901324dSJerome ForissierUsers are urged to always use the latest version of a maintained branch.
21