[Python-modules-team] Bug#652653: python-virtualenv: insecure /tmp file handling

Adam D. Barratt adam at adam-barratt.org.uk
Tue Dec 20 20:31:08 UTC 2011


On Tue, 2011-12-20 at 21:24 +0100, Nico Golde wrote:
> Hi,
> * Adam D. Barratt <adam at adam-barratt.org.uk> [2011-12-20 21:22]:
> > If the thread involved the security team saying "please fix this via
> > proposed-updates", there's an implied "by talking to the release team"
> > attached.  We're generally not involved in such discussions until after
> > the security team have decided they don't want to issue a DSA for a
> > particular issue and someone raises it with us.
> 
> We will not issue a DSA for this vulnerability.

I gathered that now ;-) (although thanks for the explicit answer) - it
was more of a general comment for the future.

Cheers,

Adam






More information about the Python-modules-team mailing list