On Thu, Jun 03, 2010 at 02:16:56PM -0400, Jon Masters wrote: > Agreed. But it is the same problem as "what if there's an exploit in a > library Anaconda uses to download repos during install?". There would > still be a lot of media out there and I'm not sure we've ever respun the > main images post GA for that, unless I'm just very wrong. As long as > we're very clear, I think it's ok. On the one hand, I think it's a little worse than that, since one is more likely to download arbitrary things. On the other hand, it's a little better, since the whole thing should be used infrequently. -- Matthew Miller <mattdm@xxxxxxxxxx> Senior Systems Architect -- Instructional & Research Computing Services Harvard School of Engineering & Applied Sciences -- devel mailing list devel@xxxxxxxxxxxxxxxxxxxxxxx https://admin.fedoraproject.org/mailman/listinfo/devel