On 01/02/2012 07:12, Yuval Greenfield wrote:
+1 on removing this security loophole in any of the ways suggested here.

Good grief, it's not a "security loophole".

If you actually cared about security, you'd already be using, recording and checking the MD5 checksums provided with each download and would already know that this isn't a security loophole.

If you're not, then quit with the security theater.

cheers,

Chris

--
Simplistix - Content Management, Batch Processing & Python Consulting
            - http://www.simplistix.co.uk
_______________________________________________
Catalog-SIG mailing list
Catalog-SIG@python.org
http://mail.python.org/mailman/listinfo/catalog-sig

Reply via email to