Bug#474507: bitlbee: Please remove default passwords

2008-04-06 Thread Moritz Naumann
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 I apparently misunderstood the format pof this config file. The line ## Comments are marked like this. The rest of the file is INI-style. combined with other lines such as # OperPassword = ChangeMe! made me think that lines starting with just a

Bug#474507: bitlbee: Please remove default passwords

2008-04-06 Thread Wilmer van der Gaast
moritz wrote: > Please remove default passwords as provided by the configuration file. > This can become a security issue just too easily. > No passwords are required at all, and I don't even remember which passwords those hashes "resolve" to exactly. :-) The entries are commented out already. Yo

Bug#474507: bitlbee: Please remove default passwords

2008-04-06 Thread moritz
Package: bitlbee Version: 1.2-3 Severity: normal Please remove default passwords as provided by the configuration file. This can become a security issue just too easily. Instead, add hints to the configuration file as to which (if any) passwords are required to have the daemon/service start up