Mailinglist Archive: opensuse-bugs (4724 mails)

< Previous Next >
[Bug 450203] [KDE 4.3] File Manager - Super User Mode can't launch KWrite
  • From: bugzilla_noreply@xxxxxxxxxx
  • Date: Tue, 6 Apr 2010 21:05:36 +0000
  • Message-id: <20100406210536.574DCCC7D0@xxxxxxxxxxxxxxxxxxxxxx>

--- Comment #29 from Christian Boltz <suse-beta@xxxxxxxxx> 2010-04-06 23:05:33
CEST ---
(In reply to comment #28)
Would the security concern still apply if the file is located in
~/.kde4/Autostart folder?

Yes. It doesn't matter how/from where you call "xhost +local". As soon as it is
called, every local user (including SSH logins etc.) can access the X server.

As I said: it might be a _workaround_ on systems with only trusted users (or
just one user at all ;-)
xhost +local should never be a default setting, and I'm quite sure the security
team will tell you the same if you ask them.

Configure bugmail:
------- You are receiving this mail because: -------
You are on the CC list for the bug.

< Previous Next >