Whether or not you feel Telepathy is "ready" is not the subject of this
bug; the point is an uncaught exception allows Empathy to malfunction in
an unexpected manner (the conversation in question will silently fail to
transmit or receive messages), which is a remotely exploitable denial of
service.

temugen's patch is a great start to addressing the case that everyone is
seeing, but in my opinion all the mentioned cases where an uncaught
exception would bubble up to the conversation level should be addressed
in a patch, then published to karmic-security.


Security team, your opinion?

-- 
telepathy-butterfly crashed with TypeError in b64decode()
https://bugs.launchpad.net/bugs/401028
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.

-- 
ubuntu-bugs mailing list
ubuntu-bugs@lists.ubuntu.com
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs

Reply via email to