[Bug 600449] [NEW] New and added Jabber accounts are insecure by default

lirel M8R-lcodw5 at mailinator.com
Thu Jul 1 01:05:50 UTC 2010


Public bug reported:

Binary package hint: empathy

When creating new or adding existing jabber accounts the credentials will be sent unencrypted.
enabling encryption later works.

empathy should ask the user what to do or should enable tls/ssl
connections by default.

a workaround to prevent the credentials for existing accounts from being blown out unencrypted is to disable networking while passing the wizard and enabling ssl/tls before reconnecting.
new accounts could change the password after enabling ssl.

ProblemType: Bug
DistroRelease: Ubuntu 10.04
Package: empathy 2.30.1.1-0ubuntu1
ProcVersionSignature: Ubuntu 2.6.32-23.37-generic 2.6.32.15+drm33.5
Uname: Linux 2.6.32-23-generic x86_64
NonfreeKernelModules: wl
Architecture: amd64
Date: Thu Jul  1 02:41:52 2010
ExecutablePath: /usr/bin/empathy
InstallationMedia: Ubuntu 10.04 "Lucid Lynx" - Alpha amd64 (20100223.2)
ProcEnviron:
 PATH=(custom, user)
 LANG=de_DE.UTF-8
 SHELL=/bin/bash
SourcePackage: empathy

** Affects: empathy (Ubuntu)
     Importance: Undecided
         Status: New


** Tags: amd64 apport-bug lucid

-- 
New and added Jabber accounts are insecure by default
https://bugs.launchpad.net/bugs/600449
You received this bug notification because you are a member of
Telepathy, which is subscribed to empathy in ubuntu.




More information about the Ubuntu-telepathy mailing list