Package: kcheckgmail Version: 0.5.5-2 Severity: important Tags: upstream patch
When using kdewallet to store the username and password kcheckgmail echoes through kdebug the gmail username and password, which is echoed in stdout (if kdebug's behaviour has not been changed by using kdebugdialog --fullmode) which means that it is usually stored in ~/.xsession-errors in plain text. The next simple patch comments the line that makes the call to kdebug --- /usr/src/kcheckgmail-0.5.5/src/gmail.cpp 2005-11-04 05:52:24.000000000 -0600 +++ ./gmail.cpp 2007-01-18 19:47:20.000000000 -0600 @@ -112,7 +112,7 @@ str.sprintf(gGMailLoginPostFormat.ascii(), mUsername.ascii(), pass.ascii()); - kdDebug() << "Sending login: " << str << endl; + //kdDebug() << "Sending login: " << str << endl; QCString b(str.utf8()); QByteArray postData(b); -- System Information: Debian Release: 4.0 APT prefers testing APT policy: (500, 'testing'), (100, 'unstable') Architecture: i386 (i686) Shell: /bin/sh linked to /bin/bash Kernel: Linux 2.6.18-a64 Locale: LANG=en_GB.UTF-8, LC_CTYPE=en_GB.UTF-8 (charmap=UTF-8) Versions of packages kcheckgmail depends on: ii kdebase-bin 4:3.5.5a.dfsg.1-5 core binaries for the KDE base mod ii kdelibs4c2a 4:3.5.5a.dfsg.1-5 core libraries and binaries for al ii libacl1 2.2.41-1 Access control list shared library ii libart-2.0-2 2.3.17-1 Library of functions for 2D graphi ii libattr1 2.4.32-1 Extended attribute shared library ii libaudio2 1.8-2 The Network Audio System (NAS). (s ii libc6 2.3.6.ds1-8 GNU C Library: Shared libraries ii libfam0 2.7.0-12 Client library to control the FAM ii libfontconfig1 2.4.1-2 generic font configuration library ii libfreetype6 2.2.1-5 FreeType 2 font engine, shared lib ii libgcc1 1:4.1.1-21 GCC support library ii libice6 1:1.0.1-2 X11 Inter-Client Exchange library ii libidn11 0.6.5-1 GNU libidn library, implementation ii libjpeg62 6b-13 The Independent JPEG Group's JPEG ii libpng12-0 1.2.15~beta5-1 PNG library - runtime ii libqt3-mt 3:3.3.7-2 Qt GUI Library (Threaded runtime v ii libsm6 1:1.0.1-3 X11 Session Management library ii libstdc++6 4.1.1-21 The GNU Standard C++ Library v3 ii libx11-6 2:1.0.3-4 X11 client-side library ii libxcursor1 1.1.7-4 X cursor management library ii libxext6 1:1.0.1-2 X11 miscellaneous extension librar ii libxft2 2.1.8.2-8 FreeType-based font drawing librar ii libxi6 1:1.0.1-4 X11 Input extension library ii libxinerama1 1:1.0.1-4.1 X11 Xinerama extension library ii libxrandr2 2:1.1.0.2-5 X11 RandR extension library ii libxrender1 1:0.9.1-3 X Rendering Extension client libra ii libxt6 1:1.0.2-2 X11 toolkit intrinsics library ii zlib1g 1:1.2.3-13 compression library - runtime kcheckgmail recommends no packages. -- no debconf information -- Atomo64 - Raphael Please avoid sending me Word, PowerPoint or Excel attachments. See http://www.gnu.org/philosophy/no-word-attachments.html -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]