
[Please CC me if you want me to see your replies]

I'd imagine you all saw this bug go past, so I was wondering if the lack
of reaction is due to it seeming to be Somebody Else's Problem.

If so, I think it's pretty clear that there's an RC bug in there
somewhere -- I didn't set the severity to critical myself because I
think someone from the KDE team should decide what needs to be done, and
apply the appropriate severity on whichever package really needs fixing.

In case you're wondering how an install-time warning might count as RC,
please consider that the result of this is that someone deciding to
install Debian (perhaps for the first time) and selecting KDE as their
DE currently gets presented with what amounts to a declaration that
Debian is insecure by default -- there's a screenshot in the bug:


Cheers, Phil.
|)|  Philip Hands  [+44 (0)20 8530 9560]  HANDS.COM Ltd.
|-|  http://www.hands.com/    http://ftp.uk.debian.org/
|(|  Hugo-Klemm-Strasse 34,   21075 Hamburg,    GERMANY

Attachment: signature.asc
Description: PGP signature

Reply via email to