[prev in list] [next in list] [prev in thread] [next in thread] 

List:       kmail-devel
Subject:    Re: [PATCH] fix '!' in scrambled passwords
From:       Ingo =?iso-8859-15?q?Kl=F6cker?= <kloecker () kde ! org>
Date:       2007-04-22 20:47:51
Message-ID: 200704222247.55098 () erwin ! ingo-kloecker ! de
[Download RAW message or body]

[Attachment #2 (multipart/signed)]


On Friday 20 April 2007 17:01, Dirk Mueller wrote:
> Hi,
>
> with the recent utf8 decoder fix in Qt (CVE-2007-0242), kmail fails
> to restore passwords with '!' correctly from kconfig. the issue is
> that '!' is scrambled to 0xfffe - the unicode BOM. which is now
> rejected by the utf8-decoder.
>
> the only workaround I could think of without breaking it for everyone
> is to not encode the '!' character. this is a small information leak,
> but I can't see a way to make it working without some breakage.
>
> for KDE4 I hope the stupid, stupid, ultrastupid scrambler is fixed to
> not produce BOMs (0xffff, 0xffffe).
>
> ok?

Yes, thanks for fixing this problem.

Regards,
Ingo

[Attachment #5 (application/pgp-signature)]

_______________________________________________
KMail developers mailing list
KMail-devel@kde.org
https://mail.kde.org/mailman/listinfo/kmail-devel


[prev in list] [next in list] [prev in thread] [next in thread] 

Configure | About | News | Add a list | Sponsored by KoreLogic