Bug#528938: suggested patch

2009-06-27 Thread Julien Valroff
Hello, Le dimanche 17 mai 2009 à 20:23 +, The Fungi a écrit : Apologies--my previous message included a broken patch from an earlier attempt rather than the current one. Here is what I'm presently using on my sytems: First, thanks for sending this patch, which is for now the only possible

Bug#528938: suggested patch

2009-06-27 Thread The Fungi
On Sat, Jun 27, 2009 at 06:00:32PM +0200, Julien Valroff wrote: [...] I am not a security expert, and I am not sure to understand how your patch would make ajaxterm really secure. From what I could read, Math.random() is said to be inherently insecure. Well, the primary concern (according to

Bug#528938: suggested patch

2009-05-17 Thread The Fungi
Since sid is used as a string, here's a cheap way to increase its complexity by more than 10^7 without increasing its length, simply by adding mixed-case letters (this is what I've done on systems where I use the application and it works fine): --- /usr/share/ajaxterm/ajaxterm.js 2009-02-17

Bug#528938: suggested patch

2009-05-17 Thread The Fungi
Apologies--my previous message included a broken patch from an earlier attempt rather than the current one. Here is what I'm presently using on my sytems: --- /usr/share/ajaxterm/ajaxterm.js 2009-02-17 13:40:43.0 + +++ ajaxterm.js 2009-05-17 20:15:16.0 + @@ -3,7 +3,16