Skip to content

gVisor security policy: Clarifications and update for InternalEsc.#12768

Open
copybara-service[bot] wants to merge 1 commit intomasterfrom
test/cl885823770
Open

gVisor security policy: Clarifications and update for InternalEsc.#12768
copybara-service[bot] wants to merge 1 commit intomasterfrom
test/cl885823770

Conversation

@copybara-service
Copy link
Copy Markdown

gVisor security policy: Clarifications and update for InternalEsc.

CVEs are no longer issued for InternalEsc issues. Valid reports
of InternalEsc issues submitted prior to this policy change will
still be eligible for compensation.

Also clarify what qualifies for sandbox escape and exfiltration.

@copybara-service copybara-service bot added the exported Issue was exported automatically label Mar 20, 2026
CVEs are no longer issued for `InternalEsc` issues. Valid reports of `InternalEsc` issues submitted prior to this policy change will still be eligible for compensation. Also clarify what qualifies for sandbox escape and exfiltration. PiperOrigin-RevId: 885823770
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

exported Issue was exported automatically

1 participant