https://bugzilla.gnome.org/show_bug.cgi?id=674470
sysadmin | Other | unspecified
Olav Vitters <bugzilla-gnome> changed:
What |Removed |Added
----------------------------------------------------------------------------
CC| |[email protected]
--- Comment #1 from Olav Vitters <[email protected]> 2012-04-21
11:37:35 UTC ---
First thoughts:
- PHP is the evil. E.g. "$uploadfile = $uploaddir .
basename($_FILES['userfile']['name']);", fortunately you don't use it, but this
is insecure.
- I think we should put it on https
I wonder about the general feature though. If you use hash to generate the icc
profile, how would people use it? They have to write down the URL?
For GNOME users:
Just providing the file seems easier
For Windows/Mac OS X users:
Seems easier just to email to file somewhere? I guess you worry about abuse?
What is the MIME type for those icc files btw?
--
Configure bugmail: https://bugzilla.gnome.org/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are watching the QA contact of the bug.
You are watching the assignee of the bug.
_______________________________________________
gnome-infrastructure mailing list
[email protected]
http://mail.gnome.org/mailman/listinfo/gnome-infrastructure