You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
The company I work for utilizes the gopxl/beep package in one of our products, and we discovered an out-of-bounds read bug affecting both gopxl/beep and faiface/beep.
I would like to report this issue privately and follow responsible disclosure best practices, as it can pose a security vulnerability (Denial of Service) in scenarios where the functionality affected by the bug processes untrusted data. However, there is no security.md policy file in this repository, and I've got no reply to the emails I've sent to the maintainers/contributors (i.e., the ones I could find an email).
Could one of the project maintainers reach out to me or add the security.md policy file so I could report through Github, please?
Thanks
The text was updated successfully, but these errors were encountered:
Hi beep maintainers,
The company I work for utilizes the gopxl/beep package in one of our products, and we discovered an out-of-bounds read bug affecting both gopxl/beep and faiface/beep.
I would like to report this issue privately and follow responsible disclosure best practices, as it can pose a security vulnerability (Denial of Service) in scenarios where the functionality affected by the bug processes untrusted data. However, there is no security.md policy file in this repository, and I've got no reply to the emails I've sent to the maintainers/contributors (i.e., the ones I could find an email).
Could one of the project maintainers reach out to me or add the security.md policy file so I could report through Github, please?
Thanks
The text was updated successfully, but these errors were encountered: