Hi,
there seems to be a memory leak in jabber_auth_start
(src/protocols/jabber/auth.c:101) when using plaintext authentication: the
"response" string is never freed.
And I don't think that disabling plaintext authentication when not using
Jabber over SSL is the right thing to do. Gaim just can't know if it is
being used over an insecure connection - it could be a VPN connection (and
using SSL over a VPN connection just doesn't seem to make much sense for
me). Maybe you can make it a user configurable option?
bye, Christof
--
http://cmeerw.org JID: cmeerw@...
mailto cmeerw at web.de
|