emacs-devel
[Top][All Lists]
Advanced

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: Emacs Arbitrary Code Execution and How to Avoid It


From: Jean Louis
Subject: Re: Emacs Arbitrary Code Execution and How to Avoid It
Date: Wed, 11 Dec 2024 12:25:24 +0300
User-agent: Mutt/2.2.12 (2023-09-09)

* Eshel Yaron <me@eshelyaron.com> [2024-12-11 11:37]:
> That's not quite right.  Users do not say "execute arbitrary ELisp in
> any elisp-mode buffer".  They often say something like "diagnose issues
> (e.g. with Flymake) in all such buffers".  The fact that this feature
> involves arbitrary code execution is a security defect, not a necessity.
> Moreover, Emacs never mentions (in the docs, warnings, or otherwise)
> that using this feature comes with the risk of arbitrary code execution.

Send me the working example of dangerous macro, that I can see how it
works, thank you. Make 

-- 
Jean Louis



reply via email to

[Prev in Thread] Current Thread [Next in Thread]