Hi Henri, These information are correct, but IMO this situation is not sufficient to close this bug because the user can activate it by himself and be exposed to the security hole.
The patch for this issue will reach Sid tonight and I'll see how to backport it to Wheezy. Regards, Carl Chenet -- To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org