tag 355192 + security
thanks

Hi!

Is there any progress on bug #355192?
Has this bug report been forwarded upstream?

As explained in  http://bugs.debian.org/355192#59 , the initially
reported issue still applies to version 2.5.0~beta1.
I am currently using version 2.6.0, but I checked Sylpheed upstream
changelog and it seems there has been no SSL-related change since
version 2.5.0~beta1.

Also, I am still convinced that this has an impact on security, hence I
am tagging the bug accordingly: as explained in the original bug report
http://bugs.debian.org/355192#5

| the user is not warned at all about a certificate
| expiration and could never realize he/she is connecting to a
| potentially unsafe server.


I hope this issue may be dealt with soon.
Thanks in advance for any help.


-- 
 New location for my website! Update your bookmarks!
 http://www.inventati.org/frx
..................................................... Francesco Poli .
 GnuPG key fpr == C979 F34B 27CE 5CD8 DC12  31B5 78F4 279B DD6D FCF4

Attachment: pgpgUgM6LQouj.pgp
Description: PGP signature

Reply via email to