[tex-k] secure mode of dvips should be default

Sebastian Rahtz sebastian.rahtz@computing-services.oxford.ac.uk
Sat, 2 Jun 2001 14:35:37 +0100


Robin Fairbairns writes:
 > but that same attack could in principle propagate to dvips -- someone
 > only has to include a special saying `rm -rf ~/* and ... pow!
 > 
 > i agree that off-by-default is what should appear in the
 > distributions.

I am bemused to see that you cannot do the equivalent of -R in the
dvips config file. If this really is so, I propose to add it to the
dvips sources now, and set it in the config file (for TeXLive, at
least)

sebastian