From: Padraig Brady (padraig at domain antefacto.com)
Date: Mon 08 Apr 2002 - 10:47:15 IST
John P. Looney wrote:
>On Fri, Apr 05, 2002 at 06:06:12PM +0100, Paul Jakma mentioned:
>
>>On Fri, 5 Apr 2002, Liam Bedford wrote:
>>
>>>xhost + allows every machine to run apps on your Xserver, so you should do
>>>
>>it allows anyone to /connect/ to your X server.
>>trivial little distinction, but an X application connecting to your
>>server and popping up an unwanted window is the least of the problems.
>>
>
> Or worse still, workmates could set up cron jobs running something like
>
> DISPLAY=pixelbeat:0 xv -root -q -max /var/tmp/ten_ton_orgy.jpg
>
> on your work machine while you are showing something to management. Not
>that that would happen in real life. But it could.
>
What do you mean it wouldn't happen! (notice the host above).
*flash back* shudder...
Padraig.
This archive was generated by hypermail 2.1.6 : Thu 06 Feb 2003 - 13:15:53 GMT