OpenHarmony Security Process Email Template

This is a collection of email templates, which are used by the security response team to handle various security issues.

Security Issue Reporting Template

Subject: [Latest notice]

Hello, OpenHarmony community,

A security issue was found in OLDVERSION or earlier versions of COMPONENT. The severity level is Major/Minor. It is expected that the issue can be upgraded to COMPONENT.

  • Whether the security issue is a vulnerability
    • Scenarios where the issue occurs, including software, hardware, and interaction scenarios
    • Impact and scope of the issue, including the version scope
    • How to check whether the current version has the issue
  • How to mitigate the impact of the vulnerability

    • Short-term mitigation solution
    • Long-term mitigation solution, such as patch installation address and mode
  • Vulnerability details