Package: update-notifier Version: 0.59.5.debian-1 Severity: important update-notifier uses gksu to grant root access even if sudo is used the root user doesn't exist.
If the user uses sudo and has no password defined for the root user, when clicking on the icon in the systray, update-notifier will simply ask for a password that has never been defined in the system. The workaround is to create a root password (sudo passwd root) but that's not straight forward for everybody, thus making the package unusable for those users. There should be a way to check wheter or not the root password has been defined, or check if the user running the application can be granted administrative rights using gksudo first. It seems to work on some other Debian based distributions using sudo, I guess they replaced gksu by gksudo in the code, but that's not a universal solution. -- System Information: Debian Release: lenny/sid APT prefers testing APT policy: (500, 'testing') Architecture: i386 (i686) Kernel: Linux 2.6.24-1-686 (SMP w/2 CPU cores) Locale: LANG=en_IE.UTF-8, LC_CTYPE=en_IE.UTF-8 (charmap=UTF-8) Shell: /bin/sh linked to /bin/bash Versions of packages update-notifier depends on: ii dbus [dbus-1-utils] 1.1.20-1 simple interprocess messaging syst ii gksu 2.0.0-5 graphical frontend to su ii hal 0.5.11~rc2-1 Hardware Abstraction Layer ii libart-2.0-2 2.3.20-1 Library of functions for 2D graphi ii libatk1.0-0 1.20.0-1 The ATK accessibility toolkit ii libbonobo2-0 2.22.0-1 Bonobo CORBA interfaces library ii libbonoboui2-0 2.22.0-1 The Bonobo UI library ii libc6 2.7-6 GNU C Library: Shared libraries ii libcairo2 1.4.14-1 The Cairo 2D vector graphics libra ii libdbus-1-3 1.1.20-1 simple interprocess messaging syst ii libdbus-glib-1-2 0.74-1 simple interprocess messaging syst ii libfontconfig1 2.5.0-2 generic font configuration library ii libgconf2-4 2.22.0-1 GNOME configuration database syste ii libglade2-0 1:2.6.2-1 library to load .glade files at ru ii libglib2.0-0 2.16.1-2 The GLib library of C routines ii libgnome-keyring0 2.22.0-2 GNOME keyring services library ii libgnome2-0 2.20.1.1-1 The GNOME 2 library - runtime file ii libgnomecanvas2-0 2.20.1.1-1 A powerful object-oriented display ii libgnomeui-0 2.20.1.1-1 The GNOME 2 libraries (User Interf ii libgnomevfs2-0 1:2.22.0-2 GNOME Virtual File System (runtime ii libgtk2.0-0 2.12.9-2 The GTK+ graphical user interface ii libhal1 0.5.11~rc2-1 Hardware Abstraction Layer - share ii libice6 2:1.0.4-1 X11 Inter-Client Exchange library ii libnotify1 [libnotify1 0.4.4-3 sends desktop notifications to a n ii liborbit2 1:2.14.12-0.1 libraries for ORBit2 - a CORBA ORB ii libpango1.0-0 1.20.0-1 Layout and rendering of internatio ii libpopt0 1.10-3 lib for parsing cmdline parameters ii libsm6 2:1.0.3-1+b1 X11 Session Management library ii libx11-6 2:1.0.3-7 X11 client-side library ii libxau6 1:1.0.3-2 X11 authorisation library ii libxcursor1 1:1.1.9-1 X cursor management library ii libxext6 2:1.0.4-1 X11 miscellaneous extension librar ii libxfixes3 1:4.0.3-2 X11 miscellaneous 'fixes' extensio ii libxi6 2:1.1.3-1 X11 Input extension library ii libxinerama1 2:1.0.3-1 X11 Xinerama extension library ii libxml2 2.6.31.dfsg-2 GNOME XML library ii libxrandr2 2:1.2.2-1 X11 RandR extension library ii libxrender1 1:0.9.4-1 X Rendering Extension client libra ii notification-daemon 0.3.7-1+b1 a daemon that displays passive pop ii python 2.4.4-6 An interactive high-level object-o ii python-apt 0.7.5 Python interface to libapt-pkg ii update-manager 0.42.2ubuntu22-15 GNOME application that manages sof update-notifier recommends no packages. -- no debconf information -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]