On Sun, 2006-11-05 at 15:19 +0100, Matthias Klose wrote:
> > I'm not really sure what severity this should be.
> 
> yeah, but filing with rdiculous values in the first place.

I don't agree. This bug certainly has the scope to cause serious
security problems if overlooked, as I explained in the original report.

> please give concrete examples, I don't see the mentioned behaviour.

        $ python2.4
        Python 2.4.4 (#2, Oct 20 2006, 00:23:25) 
        [GCC 4.1.2 20061015 (prerelease) (Debian 4.1.1-16.1)] on linux2
        Type "help", "copyright", "credits" or "license" for more information.
        >>> import SoftwareProperties
        >>> SoftwareProperties
        <module 'SoftwareProperties' from 
'/usr/lib/python2.4/site-packages/SoftwareProperties/__init__.pyc'>
        >>> 
        
        $ ls /usr/lib/python2.4/site-packages/SoftwareProperties/__init__.py
        ls: /usr/lib/python2.4/site-packages/SoftwareProperties/__init__.py: No 
such file or directory
        
        $ ls /usr/lib/python2.4/site-packages/SoftwareProperties/__init__.py[co]
        /usr/lib/python2.4/site-packages/SoftwareProperties/__init__.pyc
        
        $ apt-file search SoftwareProperties/__init__.py
        update-manager: 
usr/share/python-support/update-manager/SoftwareProperties/__init__.py
        
        $ dpkg -l update-manager
        pn  update-manager <none>         (no description available)

-- 
Sam Morris
http://robots.org.uk/

PGP key id 1024D/5EA01078
3412 EA18 1277 354B 991B  C869 B219 7FDB 5EA0 1078

Attachment: signature.asc
Description: This is a digitally signed message part

Reply via email to