Re: [Python-Dev] CVE-2008-5983 "untrusted python modules search path"

2009-05-12 Thread jek
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Antoine Pitrou napsal(a): > Hello, > > I don't think it has already posted to the list, apologies if it has. > > Some Linux tools and vendors have been hit by an alleged "security hole" where > an embedded Python interpreter will prepend the curren

Re: [Python-Dev] Python security team

2008-09-30 Thread jek <[EMAIL PROTECTED]>
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Guido van Rossum napsal(a): > I think we may have to expand our selection creteria, since the > existing approach has led to a small PSRT whose members are all too > busy to do the necessary legwork. At the same time we need to remain > selective -- I