Security issue with .desktop files revisited

Thiago Macieira thiago at kde.org
Wed Apr 12 22:21:16 EEST 2006


Egbert van der Wal wrote:
>3) The command executed is a program/script in /usr/bin, which are
>generally(but not always ofcourse) safer to use.

Like /usr/bin/perl or /usr/bin/env?

-- 
Thiago Macieira  -  thiago (AT) macieira.info - thiago (AT) kde.org
  thiago.macieira (AT) trolltech.com     Trolltech AS
    GPG: 0x6EF45358                   |  Sandakerveien 116,
    E067 918B B660 DBD1 105C          |  NO-0402
    966C 33F5 F005 6EF4 5358          |  Oslo, Norway
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 191 bytes
Desc: not available
Url : http://lists.freedesktop.org/archives/xdg/attachments/20060412/76c32cda/attachment.pgp 


More information about the xdg mailing list