Bug#316154: [tex-live] Re: Bug#316154: texmf.cfg: Close possible security problem

Hans Hagen Outside pragma at wxs.nl
Sat Aug 27 18:16:13 CEST 2005


Hilmar Preusse wrote:

>Well, the submitter spoke about some mal code sent to somebody, who
>calls it and the LaTeX file does something really bad. I don't know
>how realistic that scenario is. Well, normally I don't read very long
>documnents before processing them....
>  
>
since one can open a file and write to it, one can overwrite a system file and mess up a machine; there is not much that one can do about it, (apart from setting permissions of files/paths) since tex jobs needs auxiliary files; just don't process files you don't trust

Hans  

-----------------------------------------------------------------
                                          Hans Hagen | PRAGMA ADE
              Ridderstraat 27 | 8061 GH Hasselt | The Netherlands
     tel: 038 477 53 69 | fax: 038 477 53 74 | www.pragma-ade.com
                                             | www.pragma-pod.nl
-----------------------------------------------------------------




More information about the tex-live mailing list