Em 23 May 2001 22:27:25 -0300, Evandro Fernandes Giovanini escreveu:
> what if someone distributes a malicious elf/a.out binary as
> foo-1.5-2.i386.rpm the user will open the file with gmc/nautilus and
> instead of telling the user "no viewer capable of opening this file" (or
> whatever it says when someone runs a binary w/o the execute bit) it will
> set the execute bit and run the file. boom!
> 
RPMs should be treated by the Install view. You click the RPM, it'll
start installing.
On this fake RPM, Install view would bitch, "Danger, Will Robinson! Bad
RPM!", it won't be installed and you'll be safe.

-- 
---
Cesar Cardoso - [EMAIL PROTECTED] - ICQ 32237133
"MOVE 'ZIG'!!! FOR GREAT JUSTICE!" 
* Colabore com o racionamento de energia. Mantenha a TV desligada. *

_______________________________________________
Mc mailing list
[EMAIL PROTECTED]
http://mail.gnome.org/mailman/listinfo/mc

Reply via email to