Dear Jonas,

Quoting out of order.

> ... it is also possible to tell a user to execute "rm -rf ~/"

That would be an argument, if the issue was that the bad guy had to
convince you to do "gs -dNOSAFER x.ps". But no, he only has to "trick"
you into using gs as "god intended".

> ... I choose to not change this for Squeeze, unless ... more
> concrete proof that the system is insecure ...

I cannot provide a more obvious way to attack gs... so for now I must
accept your decision.

Cheers, Paul

Paul Szabo   p...@maths.usyd.edu.au   http://www.maths.usyd.edu.au/u/psz/
School of Mathematics and Statistics   University of Sydney    Australia



-- 
To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org
with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org

Reply via email to