Thanks for preparing the debdiffs! It looks like karmic is vulnerable too, so we'll need that as well. I'll update the debdiffs to use proper DEP-3 and fix up the formatting of the changelogs a bit ("CVE-" vs "CVE: "), and get these building.
** Also affects: libvirt (Ubuntu Karmic) Importance: Undecided Status: New ** Also affects: qemu-kvm (Ubuntu Karmic) Importance: Undecided Status: New ** Changed in: libvirt (Ubuntu Karmic) Status: New => Invalid ** Changed in: qemu-kvm (Ubuntu Karmic) Status: New => In Progress -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/697197 Title: Empty password allows access to VNC in libvirt -- ubuntu-bugs mailing list ubuntu-bugs@lists.ubuntu.com https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs