Hi Steve,

Thomas Prokosch <[EMAIL PROTECTED]> wrote:

> Package: xscreensaver
> Version: 4.24-5
> Severity: grave
> Tags: security
> Justification: user security hole

Why have you set the severity of this bug to important?  IMHO it should
be RC, because indeed for a large group of users (those with LCD flat
screens) the main purpose of a screensaver is the locking function.  And
from the network address in the original bugreport

> xscreensaver: nss_ldap: failed to bind to LDAP server 
> ldap://ldap.example.com: Can't contact LDAP server

it seems as if this does not only happen when actually LDAP is used for
user authentication, but either in all cases with remote authentication,
or even in all cases.

Therefore I think this should at least be thoroughly investigated before
downgrading. 

Thanks for considering, Frank
-- 
Dr. Frank Küster
Single Molecule Spectroscopy, Protein Folding @ Inst. f. Biochemie, Univ. Zürich
Debian Developer (teTeX/TeXLive)

Reply via email to