Re: .exrc file security risks
"Reg Quinton" <[email protected]>
| Newsgroups | gmane.comp.security.sun |
|---|---|
| Message-ID | <002101c30f11$6a107530$0c646481@REGQUINTON> |
> external commands. So you have the situation where if a .exrc file is > compromised, a key could be maped to perform any command as the user running > vi... By the same token. If .login, .cshrc, .profile, etc. are compromised then you have similar issues -- you've lost control of your environment. Does anyone recommend one not use these files?