Package: vidalia
Version: 0.2.19-1
Severity: normal

Hi,

the updated README.Debian reads:

  The second one is an out-of-the-box security profile for AppArmor, a
  mandatory access control software that confines processes to certain
  resources.

In my understanding, this implies the AppArmor profile is active
out-of-the-box, which is plain wrong on Wheezy/sid: one has to opt-in
for AppArmor on the kernel command-line for this to become true.

I think this paragraph should be a bit more shy, and point to a place
that contains up-to-date documentation about AppArmor support in
Debian:

    https://wiki.debian.org/AppArmor

... so that the user can learn how to actually enable AppArmor.

I'm refraining myself from adding the "security" tag, but I believe
such lack of clarity may create a misplaced feeling of security for
some users, which, I think, is a problem.



-- 
To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org
with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org

Reply via email to