[Python-modules-team] Bug#652653: python-virtualenv: insecure /tmp file handling
Adam D. Barratt
adam at adam-barratt.org.uk
Tue Dec 20 20:31:08 UTC 2011
On Tue, 2011-12-20 at 21:24 +0100, Nico Golde wrote:
> * Adam D. Barratt <adam at adam-barratt.org.uk> [2011-12-20 21:22]:
> > If the thread involved the security team saying "please fix this via
> > proposed-updates", there's an implied "by talking to the release team"
> > attached. We're generally not involved in such discussions until after
> > the security team have decided they don't want to issue a DSA for a
> > particular issue and someone raises it with us.
> We will not issue a DSA for this vulnerability.
I gathered that now ;-) (although thanks for the explicit answer) - it
was more of a general comment for the future.
More information about the Python-modules-team