[tex-k] secure mode of dvips should be default
Sebastian Rahtz
sebastian.rahtz@computing-services.oxford.ac.uk
Sat, 2 Jun 2001 14:35:37 +0100
Robin Fairbairns writes:
> but that same attack could in principle propagate to dvips -- someone
> only has to include a special saying `rm -rf ~/* and ... pow!
>
> i agree that off-by-default is what should appear in the
> distributions.
I am bemused to see that you cannot do the equivalent of -R in the
dvips config file. If this really is so, I propose to add it to the
dvips sources now, and set it in the config file (for TeXLive, at
least)
sebastian