This issue tracker has been migrated to GitHub, and is currently read-only.
For more information, see the GitHub FAQs in the Python's Developer Guide.

Author Philippe.Godbout
Recipients Arfrever, Daniel.Garcia, Philippe.Godbout, benjamin.peterson, christian.heimes, edulix, georg.brandl, jcea, jwilk, lars.gustaebel, martin.panter, ned.deily, r.david.murray, serhiy.storchaka, taleinat, vstinner
Date 2018-08-27.21:08:07
SpamBayes Score -1.0
Marked as misclassified Yes
Message-id <1535404087.98.0.56676864532.issue21109@psf.upfronthosting.co.za>
In-reply-to
Content
Lars, I think the suggested approach is great. Documentation for the tarfile class should be changed in order to direct user to the "safe" version with an relevant warning. A bit like what is done for PRNG safety.
As stated by Eduardo an optional "safe" parameter to opt into safe mode could also be an interesting approach.
History
Date User Action Args
2018-08-27 21:08:08Philippe.Godboutsetrecipients: + Philippe.Godbout, georg.brandl, jcea, lars.gustaebel, vstinner, taleinat, christian.heimes, benjamin.peterson, jwilk, ned.deily, Arfrever, r.david.murray, martin.panter, serhiy.storchaka, edulix, Daniel.Garcia
2018-08-27 21:08:07Philippe.Godboutsetmessageid: <1535404087.98.0.56676864532.issue21109@psf.upfronthosting.co.za>
2018-08-27 21:08:07Philippe.Godboutlinkissue21109 messages
2018-08-27 21:08:07Philippe.Godboutcreate