[issue22638] ssl module: the SSLv3 protocol is vulnerable ("POODLE" attack)

Antoine Pitrou report at bugs.python.org
Wed Oct 15 15:41:45 CEST 2014


Antoine Pitrou added the comment:

Le 15/10/2014 13:07, Donald Stufft a écrit :
> 
> I really don't think it's unreasonable to say "SSL 3.0 is insecure,
> if you rely on it then you need to pass this flag to use it". Passing a
flag to do something insecure is hardly onerous.

Your position is well-known, Donald, there is no need to rehash it.

----------

_______________________________________
Python tracker <report at bugs.python.org>
<http://bugs.python.org/issue22638>
_______________________________________


More information about the Python-bugs-list mailing list