A RetroSearch Logo

Home - News ( United States | United Kingdom | Italy | Germany ) - Football scores

Search Query:

Showing content from https://mail.python.org/pipermail/python-dev/2012-March/117418.html below:

[Python-Dev] Sandboxing Python

[Python-Dev] Sandboxing PythonArmin Rigo arigo at tunes.org
Thu Mar 8 07:00:26 CET 2012
Hi Stefan,

Stefan Behnel wrote:
> could you please stop bashing CPython for no good reason, especially on
> python-dev? Specifically, to call it broken beyond repair is a rather
> offensive claim, especially when made in public.

Sorry if you were offended.  I am just trying to point out that
CPython has a rather large number of *far-fetched* corner cases in
which it is broken.  (If this is news to anyone, sorry, but examples
have been part of the CPython source tree for years and years.)  This
is of course very different from saying that CPython is generally
broken --- I don't think anyone here considers that it is.  My point
is merely to repeat that CPython is not suited to be the (only) line
of defence in any place that needs serious security.  I personally
think that the removal of 'rexec' back around Python 2.3(?) was a good
idea, as such tools give people a false sense of security.


A bientôt,

Armin.
More information about the Python-Dev mailing list

RetroSearch is an open source project built by @garambo | Open a GitHub Issue

Search and Browse the WWW like it's 1997 | Search results from DuckDuckGo

HTML: 3.2 | Encoding: UTF-8 | Version: 0.7.4