Translation problem + security vulnerability?

Bug #479692 reported by Liszy Szilveszter
8
This bug affects 1 person
Affects Status Importance Assigned to Milestone
BaShare
Incomplete
Undecided
Unassigned

Bug Description

Three and a half problem in one window.
No 1: the translated text in the header is cutted down. It says "Bashare: Hálózati beállít" but it should say "Bashare: Hálózati beállítások". The "ások" disappeared/covered/cutted.
No 2: the Band is a very short word. But in my language is very looooong. :D The whole word: "sávszélesség" but I see "sávszél" only. I abridged the word to "sávszél." It's remain understandable in this way. (I don't understand why need long field for the port/band. I need more place for the text.)
No 3: The OK button is too short. But when I modified the word to OK it fixes it. (No solution needed)
No 3.5: The UPnP button is short too. Make it larger please. I can't abridge it.

Security:
Bug or Feature?
If I setted the outgoing port to x and the incoming port automatically setted to x+1. If someone know my opened outgoing port(I don't have got any UPnP capable router(Crappy chinese junk) and I can't open UPnP port) the Someone can break into my computer, right? Make the incoming port changeable please.

Special request:
Increase the maximum band to 5000 please.

Question:
Why seemed the "URL to sending" field to input field(When I can't modificate the text/value/data). "URL for recieving" has a grey background(because it mark the input field which is uneditable)

Thank you

Revision history for this message
Liszy Szilveszter (sziszi-deactivatedaccount) wrote :
description: updated
Revision history for this message
Guiodic (Guido Iodice) (guido-iodice) wrote :

Thank you for report, but you reported 4 stuffs in 1 bug report.

About security issue, it does no matter. Port and "port+1" are both opened, so if a cracker wants to crack you he can do it in port. The problem isn't to know a opened port, a 5 years old child can know this...
About all webserver use tcp port number 80 :)
To crack someone you need to use a vulnerability in the server program.

Revision history for this message
Guiodic (Guido Iodice) (guido-iodice) wrote :

p.s. if you have not opened port on router, you have not opened port+1 too.

security vulnerability: yes → no
visibility: private → public
summary: - Translation problem + security vulnerability
+ Translation problem + security vulnerability?
Changed in bashare:
status: New → Invalid
Revision history for this message
Guiodic (Guido Iodice) (guido-iodice) wrote :

about solution(s): I marked this bug as invalid 'cause it reports too many issues. But:

1) translations strings: I released a RC2 to translators, it should solve issues with translations
2) security: it is not a security hole. But as feature, I can introduce it in a next release
3) maximum band: we need to verify if BaShare do non crash or freeze or gives error with 5MB band. You can do it: simply modify the source code and compile
4) now the 2 text box are both white :)

tags: added: translations
Revision history for this message
Emilien Klein (emilien-klein) wrote :

Created new bugs for the different issues:

1) No new bug created

2) Bug #480233

3) Bug #480230

4) Bug #426009 (reopened this bug)

Changed in bashare:
status: Invalid → Incomplete
tags: added: band interface port ui
To post a comment you must log in.
This report contains Public information  
Everyone can see this information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.