Package: lintian4python
Version: 0.27
Severity: wishlist

09:49 < pabs> jwilk: if you get lintian4python development going again, would 
be cool to flag unsafe things like os.system, os.popen, yaml.load
09:49 < jwilk> What's wrong with yaml.load?
[…]
09:53 < pabs> jwilk: yaml.load can cause arbitrary functions/modules to be 
loaded, which is why yaml.safe_load exists
[…]
09:54 < pabs> jwilk: search for !!python/object in 
http://pyyaml.org/wiki/PyYAMLDocumentation

--
Jakub Wilk


--
To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org
with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org

Reply via email to