[Bug 502601] New: Privacy bug in lizards.opensuse.org
http://bugzilla.novell.com/show_bug.cgi?id=502601 User knikanth@novell.com added comment http://bugzilla.novell.com/show_bug.cgi?id=502601#c927 Summary: Privacy bug in lizards.opensuse.org Classification: openSUSE Product: openSUSE.org Version: unspecified Platform: Other OS/Version: Other Status: NEW Severity: Normal Priority: P5 - None Component: wiki AssignedTo: bnc-team-screening@forge.provo.novell.com ReportedBy: knikanth@novell.com QAContact: adrian@novell.com Found By: Community User When I tried to add a comment to a blog post in lizards.opensuse.org, when I was not logged in, the new comment form was auto-filled with name & mail-id of the previous commenter. Even though it said "Email for notification (will not be published) " http://lizards.opensuse.org/2009/05/06/profiled-live-cds/comment-page-1/#com... Also the e-mail notification received by the blog author had my e-mail id as well. Am Donnerstag 07 Mai 2009 schrieb Nikanth:
New comment on your post #927 "Profiled Live CDs" Author : Nikanth (IP: 137.65.227.1 , elogin1.provo.novell.com) E-mail : nikanth@gmail.com URL : Whois : http://ws.arin.net/cgi-bin/whois.pl?queryinput=137.65.227.1 Comment: oh.. cool.
off-topic: the last commenter's Name and e-mail id were auto-filled for me.. even though it is said "(will not be published)"!!! Can any of you see my mail-id?
-- Configure bugmail: http://bugzilla.novell.com/userprefs.cgi?tab=email ------- You are receiving this mail because: ------- You are on the CC list for the bug.
http://bugzilla.novell.com/show_bug.cgi?id=502601
Adrian Schröter
http://bugzilla.novell.com/show_bug.cgi?id=502601
User knikanth@novell.com added comment
http://bugzilla.novell.com/show_bug.cgi?id=502601#c1
Nikanth K
http://bugzilla.novell.com/show_bug.cgi?id=502601
User psankar@novell.com added comment
http://bugzilla.novell.com/show_bug.cgi?id=502601#c2
--- Comment #2 from Sankar P
http://bugzilla.novell.com/show_bug.cgi?id=502601
User knikanth@novell.com added comment
http://bugzilla.novell.com/show_bug.cgi?id=502601#c3
--- Comment #3 from Nikanth K
I *guess* (not sure) the form data is auto-filled with data from a previous commenter from the same i.p.
Since all of us have a common outgoing i.p. the forms are filled with the same data. In addition to be being annoying it also exposes the email addresses.
No same outgoing IP is a wrong theory. I faced it when the commenter was from a different country as well. -- Configure bugmail: http://bugzilla.novell.com/userprefs.cgi?tab=email ------- You are receiving this mail because: ------- You are on the CC list for the bug.
http://bugzilla.novell.com/show_bug.cgi?id=502601
User psankar@novell.com added comment
http://bugzilla.novell.com/show_bug.cgi?id=502601#c4
--- Comment #4 from Sankar P
http://bugzilla.novell.com/show_bug.cgi?id=502601
User mmagleby@novell.com added comment
http://bugzilla.novell.com/show_bug.cgi?id=502601#c5
Matt Magleby
http://bugzilla.novell.com/show_bug.cgi?id=502601
User binner@kde.org added comment
http://bugzilla.novell.com/show_bug.cgi?id=502601#c6
--- Comment #6 from Stephan Binner
I added a rule in iChain to prevent caching of ANYTHING on lizards.opensuse.org
news.opensuse.org and zonker.opensuse.org run btw the same setup. -- Configure bugmail: http://bugzilla.novell.com/userprefs.cgi?tab=email ------- You are receiving this mail because: ------- You are on the CC list for the bug.
http://bugzilla.novell.com/show_bug.cgi?id=502601
User mmagleby@novell.com added comment
http://bugzilla.novell.com/show_bug.cgi?id=502601#c7
--- Comment #7 from Matt Magleby
http://bugzilla.novell.com/show_bug.cgi?id=502601
User mehle@novell.com added comment
http://bugzilla.novell.com/show_bug.cgi?id=502601#c8
Matthew Ehle
http://bugzilla.novell.com/show_bug.cgi?id=502601
http://bugzilla.novell.com/show_bug.cgi?id=502601#c
Barb Beckstead
http://bugzilla.novell.com/show_bug.cgi?id=502601
http://bugzilla.novell.com/show_bug.cgi?id=502601#c9
--- Comment #9 from Barb Beckstead
http://bugzilla.novell.com/show_bug.cgi?id=502601
http://bugzilla.novell.com/show_bug.cgi?id=502601#c
Matthew Ehle
http://bugzilla.novell.com/show_bug.cgi?id=502601
http://bugzilla.novell.com/show_bug.cgi?id=502601#c
Matthew Ehle
participants (1)
-
bugzilla_noreply@novell.com