Okay, after reading the upstream bug, the idea of using the md5 is being
criticized because you can still log into the site. First, Jonas claims
this isn't even true. Second, as others have mentioned, people might be
using the same password for another site and as such compromising this
password could be a serious issue.

I would recommend applying the patch provided upstream (against 11.2, I
would guess it would apply to 11.5 with proper offsets) to store the md5
instead of the password. This would at least reduce the issue. Then it
should also be stored in gnome-keyring but the issue wouldn't be as
immediate IMO.

Can anyone attempt to apply the patch and give us access to a test
package via PPA?

-- 
audioscrobbler password saved configuration file
https://bugs.launchpad.net/bugs/42686
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.

-- 
ubuntu-bugs mailing list
ubuntu-bugs@lists.ubuntu.com
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs

Reply via email to