Your message dated Thu, 5 Oct 2023 15:36:00 +0200
with message-id <25886.48064.601546.545...@cs.uni-koeln.de>
and subject line already fixed
has caused the Debian Bug report #1009640,
regarding www.debian.org: https://www.debian.org/download starts download of 
iso-image right away
to be marked as done.
This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.

(NB: If you are a system administrator and have no idea what this
message is talking about, this may indicate a serious mail system
misconfiguration somewhere. Please contact ow...@bugs.debian.org
immediately.)


-- 
1009640: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1009640
Debian Bug Tracking System
Contact ow...@bugs.debian.org with problems
--- Begin Message ---
Package: www.debian.org
Severity: important

Hello,

while looking for a download of debian software i came to 
https://www.debian.org/download
which right away started to download the current netinst.iso.

Please refrain from this, this might be a prominent link at the top of the
page (it already is) but the download must not start on itself. 

It is unexpected and a waste of bandwidth and storage which some users
aren't even aware of. It seems to be also possible to weaponize this.

http://justhaifei1.blogspot.com/2015/10/watch-your-downloads-risk-of-auto.html
https://en.wikipedia.org/wiki/Drive-by_download

Cord

--- End Message ---
--- Begin Message ---
This bug was fixed a month after your report, but we forgot to close
this bug.

-- 
regards Thomas

--- End Message ---

Reply via email to