[libgadu-devel] How to Report a Security Bug in libgadu

2013-06-01 Thread Radhesh Krishnan K
Hi all, I would like to know how to report a security bug in libgadu. I don't see any option to report a bug here http://toxygen.net/libgadu/. <http://toxygen.net/libgadu/> --. Regards, Radhesh Krishnan K. ___ libgadu-devel mailing l

Re: [libgadu-devel] How to Report a Security Bug in libgadu

2013-06-02 Thread Radhesh Krishnan K
gt; Regards, > RafaƂ Malinowski > ___ > libgadu-devel mailing list > libgadu-devel@lists.ziew.org > http://lists.ziew.org/mailman/listinfo/libgadu-devel > -- Regards, Radhesh Krishnan K. ___ libgadu-devel mailing list libgadu-devel@list

Re: [libgadu-devel] How to Report a Security Bug in libgadu

2013-06-04 Thread Radhesh Krishnan K
ble way to verify their validity in libgadu. But > since you mentioned it, I guess we should at least add a note to the > documentation. > > Regards, > Wojtek > > > -- Regards, Radhesh Krishnan K. ___ libgadu-devel mailing

Re: [libgadu-devel] How to Report a Security Bug in libgadu

2013-06-04 Thread Radhesh Krishnan K
ession(sess, GG_DEBUG_MISC, "// WARNING! > unable to verify peer certificate! res=%ld\n", res); > } > > sess->state = next_state; > > > 2013/6/4 Radhesh Krishnan K : > > Hi Wojtek, > > > > Sorry, I have a doubt. I would like to know how

Re: [libgadu-devel] How to Report a Security Bug in libgadu

2013-06-06 Thread Radhesh Krishnan K
bout leaving > >> behaviour for GG_SSL_ENABLED as is, but adding a obligatory check in > >> case of GG_SSL_REQUIRED? This way users would be still able to use SSL > >> (on their own risk) if the CA changed to something obscure. > > > > I think it makes sense. > > > >> > >> Regards, > >> Wojtek > >> > -- Regards, Radhesh Krishnan K. ___ libgadu-devel mailing list libgadu-devel@lists.ziew.org http://lists.ziew.org/mailman/listinfo/libgadu-devel

Re: [libgadu-devel] How to Report a Security Bug in libgadu

2013-06-12 Thread Radhesh Krishnan K
Hi Bartosz, I was wondering if there is any update on this ? On Fri, Jun 7, 2013 at 12:24 PM, Radhesh Krishnan K < radheshkrishn...@gmail.com> wrote: > Hi Bartosz, > > Adding Equifax Secure CA one to the list of trusted CA's sounds like a > good idea to me. > > &g

Re: [libgadu-devel] How to Report a Security Bug in libgadu

2013-06-12 Thread Radhesh Krishnan K
t; libgadu-devel mailing list > libgadu-devel@lists.ziew.org > http://lists.ziew.org/mailman/listinfo/libgadu-devel > -- Regards, Radhesh Krishnan K. ___ libgadu-devel mailing list libgadu-devel@lists.ziew.org http://lists.ziew.org/mailman/listinfo/libgadu-devel

Re: [libgadu-devel] How to Report a Security Bug in libgadu

2013-09-19 Thread Radhesh Krishnan K
ailing list > libgadu-devel@lists.ziew.org > http://lists.ziew.org/mailman/listinfo/libgadu-devel > -- Regards, Radhesh Krishnan K. ___ libgadu-devel mailing list libgadu-devel@lists.ziew.org http://lists.ziew.org/mailman/listinfo/libgadu-devel

Re: [libgadu-devel] How to Report a Security Bug in libgadu

2013-09-27 Thread Radhesh Krishnan K
Hi Wojtek, Thank you for your response. Could you request a CVE for this ? On Fri, Sep 27, 2013 at 2:21 AM, Wojtek Kaniewski wrote: > Dnia 2013-09-19, czw o godzinie 19:40 +0530, Radhesh Krishnan K pisze: > > > I couldn't follow up with this for long time. Is this bug fixe