Bug#394794: gaim: insecure password storage

2006-10-23 Thread Luke Schierer
On Mon, Oct 23, 2006 at 07:39:10AM -0500, Richard Laager wrote: > On Mon, 2006-10-23 at 03:07 -0400, Stephanie Erin Daugherty wrote: > > Application should either: > > > > 1) Encrypt files containing sensitive data with a passphrase. > > 2) Use a "keychain" or "wallet" service to store passwords i

Bug#394794: gaim: insecure password storage

2006-10-23 Thread Richard Laager
On Mon, 2006-10-23 at 03:07 -0400, Stephanie Erin Daugherty wrote: > Package: gaim > Version: 1:2.0.0+beta4-1 > Severity: normal > > Application stores passwords insecurely in ~/.gaim/accounts.xml This is addressed in the Gaim FAQ, specifically: http://gaim.sourceforge.net/plaintextpasswords.php

Bug#394794: gaim: insecure password storage

2006-10-23 Thread Luke Schierer
See http://gaim.sf.net/plaintextpasswords.php luke -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Bug#394794: gaim: insecure password storage

2006-10-23 Thread Stephanie Erin Daugherty
Package: gaim Version: 1:2.0.0+beta4-1 Severity: normal Application stores passwords insecurely in ~/.gaim/accounts.xml Application should either: 1) Encrypt files containing sensitive data with a passphrase. 2) Use a "keychain" or "wallet" service to store passwords if it's available. 3) Not of