Hi Brian!
Severity: critical
thanks
On Thu 25 Oct 2018 at 12:50:25 +0100, Brian Potkin wrote:
> Package: okular
> Version: 4:17.12.2-2
> Severity: critical
> Tags: upstream security
>
>
>
> "critical" because a document should always go to where it is sent.
> Please reduce the severity if I have overestimated the security
> implications.
Please feel free to prove me wrong.
As far as I understand printing sometimes means an unencrypted connection to a printer, which means a man in the middle attack should be easy to achieve. Thus whenever you are printing you should already trust the network and whatever is in it.
Exception is probably a printer managed directly by CUPS.