[Python-modules-team] Bug#810906: python-potr: gajim-otr is sending cleartext messages silently + project is, "experimental & potentially insecure"

Phil t at woerm.at
Wed Jan 13 15:42:40 UTC 2016


Package: python-potr
Version: 1.0.1-1.1
Severity: grave
Justification: renders package unusable

Dear Maintainer,
I think this package should be removed from Debian repos, at least till
it's fixed.
I've filed a bug on github [0] a couple of time ago and the project
auther hasn't got time to fix the bug. In addition he updated the
README.md to:
> This software is experimental and potentially insecure.
> Do not rely on it

Thank you for your time.
I'm new to reporting such a case.

[0]: https://github.com/python-otr/gajim-otr/issues/13

-- System Information:
Debian Release: stretch/sid
  APT prefers testing
  APT policy: (1000, 'testing'), (995, 'testing'), (500, 'stable'), (1,
'experimental')
Architecture: amd64 (x86_64)

Kernel: Linux 4.3.0-1-amd64 (SMP w/4 CPU cores)
Locale: LANG=en_US.UTF-8, LC_CTYPE=en_US.UTF-8 (charmap=UTF-8) (ignored:
LC_ALL set to en_US.UTF-8)
Shell: /bin/sh linked to /bin/dash
Init: systemd (via /run/systemd/system)

Versions of packages python-potr depends on:
ii  python         2.7.11-1
ii  python-crypto  2.6.1-6

python-potr recommends no packages.

python-potr suggests no packages.

-- no debconf information



More information about the Python-modules-team mailing list