Bug#619439: Please do _not_ distribute gnutls-params in the package

Andreas Metzler ametzler at downhill.at.eu.org
Thu Mar 24 18:22:38 UTC 2011


On 2011-03-23 Klaus Ethgen <Klaus at Ethgen.de> wrote:
> Package: exim4-base
> Version: 4.74-2
> Severity: grave

> The file /var/spool/exim4/gnutls-params can be find in exim4-base. This
> file is of security relevance for TLS sessions of exim. So this file
> must not shared between different installations and must not be readable
> by other than exim itself.
[...]

Good evening,

could you please consult <http://bugs.debian.org/475194> and
doublecheck whether you have new info to add?

thanks, cu andreas





More information about the Pkg-exim4-maintainers mailing list