Skip to content

Bugs

Bugs happen. Hiding them does not fix them.

Saphira publishes SVE entries for defects found in Saphira-developed software where the behaviour is worth documenting. Some may be security vulnerabilities. Some may be reliability or operational defects. Each entry records what was observed, what it affected, how it was reproduced and how it was fixed.

Saphira Linux dragon mascot

What is an SVE?

SVE means Saphira Vulnerability Entry. It is Saphira's own public record of defects with security, reliability or operational significance that are found in Saphira-developed software.

An SVE is not a CVE and should not imply that an official CVE identifier has been assigned. Do not exaggerate severity and do not call an SVE a CVE.

The principle behind this page is transparency: if Saphira finds something wrong in its own software, even something small, document what happened, how it was reproduced, what the impact was, and how it was corrected.

Published entries

Each entry records what was observed, what it affected, how it was reproduced and how it was fixed.

Found something yourself?

Ordinary faults such as package bugs, broken functionality, documentation errors, regressions and service failures belong in the public bug tracker. No account, no sign-up, no ceremony.

Report a bug →

Genuine security issues should not be filed in the public bug tracker. Report them privately under the Responsible Disclosure policy.