[Bug 434704] Re: [MIR] cheetah

Loïc Minier lool at dooz.org
Thu Sep 24 19:11:02 UTC 2009


I uploaded a couple of fixes.

debian/control.in is out of date (in Debian SVN too) *sigh*

I'm not 100% comfortable with the security approach; there are a bunch of eval()s and exec()s in there.  Since it's a web development framework, I wouldn't like it if we promoted to main an insecure programming environment for instance.
  Albeit given it's planned use for EC2, I would be willing to promote this now and do a security review later.
I think the testsuite should really be enabled.

Please subscribe to bug mail.

FYI the upstream MANIFEST is bogus:
warning: no files found matching '*.cfg'
warning: no files found matching 'examples'
warning: no files found matching 'docs'
warning: no files found matching 'bin'
warning: no files found matching '*' under directory 'docs'
warning: no files found matching '*' under directory 'examples'

Does it directly (not through a library) process binary (video, audio, etc) or structured (PDF, etc) data ? No. 
Err it certainly does; it processes templates and input vars.

-- 
[MIR] cheetah
https://bugs.launchpad.net/bugs/434704
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.

-- 
ubuntu-bugs mailing list
ubuntu-bugs at lists.ubuntu.com
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs




More information about the universe-bugs mailing list