GNU bug report logs - #24489
efaq: security risks

Previous Next

Package: emacs;

Reported by: Glenn Morris <rgm <at> gnu.org>

Date: Tue, 20 Sep 2016 22:49:02 UTC

Severity: minor

Tags: security

Found in version 25.1

Fixed in version 29.1

Done: Lars Ingebrigtsen <larsi <at> gnus.org>

Bug is archived. No further changes may be made.

Full log


Message #6 received at 24489 <at> debbugs.gnu.org (full text, mbox):

From: Lars Ingebrigtsen <larsi <at> gnus.org>
To: Glenn Morris <rgm <at> gnu.org>
Cc: 24489 <at> debbugs.gnu.org
Subject: Re: bug#24489: efaq: security risks
Date: Wed, 21 Sep 2016 00:53:13 +0200
Glenn Morris <rgm <at> gnu.org> writes:

> 2) using an Emacs mail client to view HTML mail is a security risk if remote
> content is fetched (I think it isn't by default, but this might not
> apply to every client)
>
> 3) viewing remote HTML content (eg with eww or xwidgets) is likewise a
> potential security risk.

Do you mean privacy risk?

-- 
(domestic pets only, the antidote for overdose, milk.)
   bloggy blog: http://lars.ingebrigtsen.no




This bug report was last modified 3 years and 191 days ago.

Previous Next


GNU bug tracking system
Copyright (C) 1999 Darren O. Benham, 1997,2003 nCipher Corporation Ltd, 1994-97 Ian Jackson.