Upon receipt, Jabra will acknowledge the report, and we will investigate it and work out a fix to the vulnerability if validated. In this regard, an open confidential dialogue will be encouraged, and we might request additional information from you to help with the resolution.
Jabra commits to:
- Acknowledge receipt of your report within 3 business days.
- Assess the report to determine whether we can reproduce the issue, whether it is in scope, and its potential severity. For reports that contain sufficient detail, we aim to provide an assessment within 2 weeks of acknowledgement.
- Communicate the outcome of our assessment to you and request any additional information if needed.
- For confirmed vulnerabilities, we will prioritize remediation based on severity, exploitability, and potential impact. We will provide periodic updates on our progress (at least every 30 days) until a fix or mitigation has been released, or we have decided that no fix will be made.
For confirmed vulnerabilities, we will prioritize remediation based on severity, exploitability, and potential impact. We will provide periodic updates on our progress (at least every 30 days) until a fix or mitigation has been released, or we have decided that no fix will be made.
Different product models may have unique architecture, firmware versions, and underlying technologies. Consequently, the development and testing of security patches can vary. We commit to addressing vulnerabilities across all affected models but acknowledge that delivery times may differ. Security patches might require patch input from third party vendors that might influence overall timeline of mitigating vulnerabilities.