clone 743158 -1
reassign -1 cryptsetup
retitle -1 crpytsetup: sends private information without confirmation
thanks

Am 31.03.2014 um 03:33 schrieb Norbert Preining:
> Package: systemd
> Version: 204-8
> Severity: grave
> Tags: security
> Justification: user security hole
> 
> Sending /etc/fstab without asking the user is not acceptable,
> as there might be passwords saved in there.
> 
> Please stop this.

I just noticed, that cryptsetup does the same via
/usr/share/bug/cryptsetup

Therefore cloning this bug reportbug and re-assigning

cryptsetup maintainers, please see [1] and [2], how this was fixed in
systemd. Our current bug script is at [3].

Thanks,
Michael

[1] https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=743158
[2] https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=756248
[3]
http://anonscm.debian.org/cgit/pkg-systemd/systemd.git/tree/debian/systemd.bug-script
-- 
Why is it that all of the instruments seeking intelligent life in the
universe are pointed away from Earth?

Attachment: signature.asc
Description: OpenPGP digital signature

Reply via email to