On Fri, Jun 20, 2008 at 02:51:30PM -0400, Matthew James Goins wrote:
 
> Some adventurous programmers I know are working on a system that uses
> PGP certificate user ids in unusual ways.  Some of the userids are
> essentially URIs in this system. The system needed to talk to a local
> keyserver, so we set one up using onak and mathopd, which was easy and
> worked very well, but this led to us finding a minor little bug in
> onak.
> 
> When a remote client requests a lookup of a key to which are attached
> user ids containing the ':' (colon) character, onak does not escape
> the colon in its response, which results in the user seeing an
> incorrect user id.  
> 
> This would also affect normal user id comments and other strings in
> user ids that might contain colons, even for user ids that are not
> URI-like.

Ta. I've pushed a fix for this to the upstream onak bzr tree and will
look at getting a new package rolled for Debian in the next week or two.

J.

-- 
] http://www.earth.li/~noodles/ []   What have I become, my sweetest   [
]  PGP/GPG Key @ the.earth.li   []               friend?               [
] via keyserver, web or email.  []                                     [
] RSA: 4DC4E7FD / DSA: 5B430367 []                                     [

Attachment: signature.asc
Description: Digital signature

Reply via email to