Package: dirmngr
Version: 1.1.0-1
Severity: important

The permissions in /etc/default/dirmngr for the socket is wrong.

As Werner Koch, upstream author declares in
http://lists.gnupg.org/pipermail/gnupg-devel/2011-January/025880.html :
  Permission for the socket should be given to all regular users 
  on the system. 

  This is in particular important for the forthcoming 
  2.1 GnuPG where dirmngr will also be used to access pgp keyservers.

but of course it is already important for S/MIME usage in dirmngr
versions 1.0.3-1 and 1.1.0-1. The severity is important, because
users will not be able to use dirmngr which will result in S/MIME problems
which they cannot directly understand. So it affect the overall usage
of the package.

Also see http://lists.gnupg.org/pipermail/gnupg-devel/2011-January/025876.html
for some more details and the workaround for admins. Just change
         DIRMNGR_SOCKET_MODE=0770
to
         DIRMNGR_SOCKET_MODE=0777
in /etc/default/dirmngr

Thanks,
Bernhard



-- 
To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org
with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org

Reply via email to