Bug#704229: spice-client: -w password (on the command line) is a security risk

2013-04-07 Thread Rob Browning
(If possible, please preserve the 704229-forwarded address in any replies.) I reported the following bug to the Debian bug tracker, but realized it should probably just be forwarded upstream. Rob Browning r...@defaultvalue.org writes: Package: spice-client Version: 0.11.0-1 I think the

Bug#704229: spice-client: -w password (on the command line) is a security risk

2013-04-07 Thread Liang Guo
On Mon, Apr 8, 2013 at 10:05 AM, Rob Browning r...@defaultvalue.org wrote: (If possible, please preserve the 704229-forwarded address in any replies.) I reported the following bug to the Debian bug tracker, but realized it should probably just be forwarded upstream. Rob Browning

Bug#704229: spice-client: -w password (on the command line) is a security risk

2013-03-29 Thread Rob Browning
Package: spice-client Version: 0.11.0-1 I think the spice client should probably support some other way of specifying the password since putting it on the command line makes it visible to any other users on the system. A reasonable alternative might be --password-file foo. Thanks -- Rob