StarDict is a dictionary app included in Debian that can send users' selected text to online servers in China, specifically dict.youdao.com and dict.cn. While this capability is intended to enhance functionality by providing online definitions from English-Chinese dictionaries, the behavior raises significant privacy issues. Users can disable this feature in settings, yet it remains enabled by default. This behavior is categorized as a vulnerability despite not being a bug. StarDict has been in development since 2003, and similar functionality exists in Apple macOS with its built-in dictionary feature.
StarDict, a Gtk app included in Debian, can send users' selected text unencrypted to Chinese servers, raising concerns over privacy and security.
Debian developer Maytham Alsudany confirmed that the app's behavior isn't a bug but a feature, allowing for online dictionary lookups by default.
Collection
[
|
...
]