diff doc/acknowledgements.txt @ 4480:1613754d2646

Fix first part of Password handling security issue2550688 (thanks Joseph Myers for reporting and Eli Collins for fixing) Small change against original patch: We still accept plaintext passwords (in known_schemes) when parsing encrypted password (e.g. from database). This way existing databases with plaintext passwords continue to work (I don't know of any, this would need patching on the users side) and all regression tests pass.
author Ralf Schlatterbeck <schlatterbeck@users.sourceforge.net>
date Thu, 14 Apr 2011 12:24:59 +0000
parents 9be284ce56b7
children e76576b52f2d
line wrap: on
line diff
--- a/doc/acknowledgements.txt	Thu Apr 14 09:21:23 2011 +0000
+++ b/doc/acknowledgements.txt	Thu Apr 14 12:24:59 2011 +0000
@@ -22,6 +22,7 @@
 Steve Byan,
 Brett Cannon,
 Godefroid Chapelle,
+Eli Collins,
 Roch'e Compaan,
 Wil Cooley,
 Joe Cooper,
@@ -92,6 +93,7 @@
 John Mitchell,
 Ramiro Morales,
 Toni Mueller,
+Joseph Myers,
 Stefan Niederhauser,
 Truls E. Næss,
 Bryce L Nordgren,

Roundup Issue Tracker: http://roundup-tracker.org/