Hello,
I would like to second this request that a security update be put in place for etch. While I was not able to actually "shoulder surf" a forwarded X application, the bug does seem to stop X apps from running remotely when the conditions are met, (netcat or VNC) so it might technically qualify as a DOS attack.
Also this bug is in the list of vulnerabilities that Scanners catch now so I'm getting pressure to address it on our Stable systems... I'd much rather do it the debian way via a package from security.
Is there any idea if or when the update will occur? Thanks!! -- David Ehle Computing Systems Manager CAPP CSRRI rm 077 LS Bld. IIT Main Campus Chicago IL 60616 312-567-3751 -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]