Re: .exrc file security risks

"Reg Quinton" <[email protected]>
Newsgroups gmane.comp.security.sun
Message-ID <002101c30f11$6a107530$0c646481@REGQUINTON>
> external commands.  So you have the situation where if a .exrc file is
> compromised, a key could be maped to perform any command as the user
running
> vi...

By the same token. If .login, .cshrc, .profile, etc. are compromised then
you have similar issues -- you've lost control of your environment.

Does anyone recommend one not use these files?
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.