Bug#450756: gajim: Does not validate server certs

2007-11-10 Thread Yann Leboulanger
John Goerzen wrote: > Package: gajim > Version: 0.11.2-1 > Severity: normal > > gajim does not validate server SSL/TLS certificates. This can negate > a large part of the benefit of using SSL/TLS and makes gajim > vulnerable to man-in-the-middle attacks. > > psi performs these validations correc

Bug#450756: gajim: Does not validate server certs

2007-11-09 Thread John Goerzen
Package: gajim Version: 0.11.2-1 Severity: normal gajim does not validate server SSL/TLS certificates. This can negate a large part of the benefit of using SSL/TLS and makes gajim vulnerable to man-in-the-middle attacks. psi performs these validations correctly. -- System Information: Debian Re