Skip to content

Security: Kruszoneq/macUSB

SECURITY.md

Security Policy

Supported Version

Only the latest publicly released version of macUSB receives security updates.

Reporting a Vulnerability

Functional defects with no security impact are regular application bugs and should be reported through GitHub Issues.

Use the GitHub private vulnerability reporting form only for vulnerabilities that allow an attacker, through an untrusted process or a maliciously crafted file, to gain unauthorized control of macUSB or its privileged helper, invoke privileged operations without authorization, or cause either component to execute attacker-controlled commands or code.

A report should include the affected macUSB version, a description of the vulnerability and how it can be exploited, its potential impact, and the steps required to reproduce it.

Reports will be reviewed as soon as possible. macUSB is developed in spare time, so no specific response or resolution timeframe can be guaranteed.

There aren't any published security advisories