Hey Julian... How has this been fixed eventually?
As I proposed, that all available hash algos are verified and if any fails consider it completely failed,... plus a minimum hash algo (that is not md5 or sha1 ^^)? Cheers, Chris. -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to apt in Ubuntu. https://bugs.launchpad.net/bugs/1098738 Title: apt-get source only checks md5 hashes in Sources files Status in apt package in Ubuntu: Fix Released Bug description: 'apt-get source' only validates the md5 hash in the Sources file. Ideally, it should check the sha hashes also. To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/apt/+bug/1098738/+subscriptions -- Mailing list: https://launchpad.net/~touch-packages Post to : [email protected] Unsubscribe : https://launchpad.net/~touch-packages More help : https://help.launchpad.net/ListHelp

