[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: Bug#659047: RFS: rpg - Readable Password Generator



On Wed, Apr 04, 2012 at 01:39:07PM +0300, Timo Juhani Lindfors wrote:

> I think rpg is very insecure since all local users of the system can see
> the passwords that you generate. All they need to do is to look for the
> "grep" commands that appear in the process list.

Fixed. See:

http://mentors.debian.net/debian/pool/main/r/rpg/rpg_1.0.1-1.dsc

I've ran rpg in continues loop, but no password was caught, because it
fed to grep via stdin directly from shell. To be sure, please, test it
again. 

Thank You for Your QA.

-- 

***************************
##  Vladimir Stavrinov
##  vstavrinov@gmail.com
***************************


Reply to: