Skip to content

Security: ronitgupta138/aero-linux

Security

SECURITY.md

πŸ”’ Security Policy

Supported Versions

We provide security updates and critical vulnerability patches for the following versions of Aero Linux:

Version Supported
1.4.x (Supernova) βœ… Yes (Latest Production)
1.3.x (Nebula) βœ… Yes
1.2.x (Titan) βœ… Yes
1.1.x (Edge) βœ… Yes
1.0.x (Edge) βœ… Yes
< 1.0 ❌ No

Reporting a Vulnerability

The Aero Linux maintainers take the security of our operating system, kernel configurations, and user data seriously.

If you discover a security vulnerability or privilege escalation bug in aero-cli, aero-welcome, or default sysctl configs:

  1. Do not create a public GitHub issue.
  2. Email your report directly to ronitgupta138@gmail.com with the subject line: [SECURITY] Aero Linux Vulnerability Report.
  3. Include:
    • A description of the vulnerability and affected components.
    • Steps to reproduce or proof-of-concept (PoC) exploit code.
    • Potential impact on user systems.

Disclosure & Remediation Timeline

  • Acknowledgment: Within 24–48 hours.
  • Triage & Patch Development: Within 7 days.
  • Public Release & Advisory: Coordinated release with patch notes crediting the security researcher.

There aren't any published security advisories