From mboxrd@z Thu Jan 1 00:00:00 1970 Path: news.gmane.org!.POSTED!not-for-mail From: Phil Sainty Newsgroups: gmane.emacs.bugs Subject: bug#31709: 27.0.50; Wishlist: Perhaps Emacs should load a file when getting a particular signal? Date: Wed, 06 Jun 2018 05:05:54 +1200 Message-ID: <541c2434b1e6884a03b2119d3b7a483c@webmail.orcon.net.nz> References: <83y3fubkum.fsf@gnu.org> <83a7s9b8nv.fsf@gnu.org> <3396fe3edac96118eeaea92013f4cbd4@webmail.orcon.net.nz> <0c6052eff2cd93fe83c953b3c9d3d1da@webmail.orcon.net.nz> <874lih2oc1.fsf@gmail.com> <6468672194d6d77797b7abf854a568d9@webmail.orcon.net.nz> NNTP-Posting-Host: blaine.gmane.org Mime-Version: 1.0 Content-Type: text/plain; charset=US-ASCII; format=flowed Content-Transfer-Encoding: 7bit X-Trace: blaine.gmane.org 1528218261 12384 195.159.176.226 (5 Jun 2018 17:04:21 GMT) X-Complaints-To: usenet@blaine.gmane.org NNTP-Posting-Date: Tue, 5 Jun 2018 17:04:21 +0000 (UTC) User-Agent: Orcon Webmail Cc: 31709@debbugs.gnu.org, Lars Ingebrigtsen , bug-gnu-emacs To: Robert Pluim Original-X-From: bug-gnu-emacs-bounces+geb-bug-gnu-emacs=m.gmane.org@gnu.org Tue Jun 05 19:04:17 2018 Return-path: Envelope-to: geb-bug-gnu-emacs@m.gmane.org Original-Received: from lists.gnu.org ([208.118.235.17]) by blaine.gmane.org with esmtp (Exim 4.84_2) (envelope-from ) id 1fQFNZ-00035l-3Z for geb-bug-gnu-emacs@m.gmane.org; Tue, 05 Jun 2018 19:04:17 +0200 Original-Received: from localhost ([::1]:48133 helo=lists.gnu.org) by lists.gnu.org with esmtp (Exim 4.71) (envelope-from ) id 1fQFPe-0007v4-H5 for geb-bug-gnu-emacs@m.gmane.org; Tue, 05 Jun 2018 13:06:26 -0400 Original-Received: from eggs.gnu.org ([2001:4830:134:3::10]:45757) by lists.gnu.org with esmtp (Exim 4.71) (envelope-from ) id 1fQFPK-0007oe-8g for bug-gnu-emacs@gnu.org; Tue, 05 Jun 2018 13:06:07 -0400 Original-Received: from Debian-exim by eggs.gnu.org with spam-scanned (Exim 4.71) (envelope-from ) id 1fQFPG-0000xe-Hd for bug-gnu-emacs@gnu.org; Tue, 05 Jun 2018 13:06:06 -0400 Original-Received: from debbugs.gnu.org ([208.118.235.43]:55783) by eggs.gnu.org with esmtps (TLS1.0:RSA_AES_128_CBC_SHA1:16) (Exim 4.71) (envelope-from ) id 1fQFPG-0000xQ-Dv for bug-gnu-emacs@gnu.org; Tue, 05 Jun 2018 13:06:02 -0400 Original-Received: from Debian-debbugs by debbugs.gnu.org with local (Exim 4.84_2) (envelope-from ) id 1fQFPG-0000cZ-0R for bug-gnu-emacs@gnu.org; Tue, 05 Jun 2018 13:06:02 -0400 X-Loop: help-debbugs@gnu.org Resent-From: Phil Sainty Original-Sender: "Debbugs-submit" Resent-CC: bug-gnu-emacs@gnu.org Resent-Date: Tue, 05 Jun 2018 17:06:01 +0000 Resent-Message-ID: Resent-Sender: help-debbugs@gnu.org X-GNU-PR-Message: followup 31709 X-GNU-PR-Package: emacs X-GNU-PR-Keywords: Original-Received: via spool by 31709-submit@debbugs.gnu.org id=B31709.15282183592377 (code B ref 31709); Tue, 05 Jun 2018 17:06:01 +0000 Original-Received: (at 31709) by debbugs.gnu.org; 5 Jun 2018 17:05:59 +0000 Original-Received: from localhost ([127.0.0.1]:35447 helo=debbugs.gnu.org) by debbugs.gnu.org with esmtp (Exim 4.84_2) (envelope-from ) id 1fQFPC-0000cH-R8 for submit@debbugs.gnu.org; Tue, 05 Jun 2018 13:05:59 -0400 Original-Received: from smtp-1.orcon.net.nz ([60.234.4.34]:37909) by debbugs.gnu.org with esmtp (Exim 4.84_2) (envelope-from ) id 1fQFPB-0000c9-C2 for 31709@debbugs.gnu.org; Tue, 05 Jun 2018 13:05:58 -0400 Original-Received: from [10.253.37.70] (port=57715 helo=webmail.orcon.net.nz) by smtp-1.orcon.net.nz with esmtpa (Exim 4.86_2) (envelope-from ) id 1fQFP8-0005rd-VX; Wed, 06 Jun 2018 05:05:55 +1200 Original-Received: from [150.107.175.207] via [10.253.37.253] by webmail.orcon.net.nz with HTTP (HTTP/1.1 POST); Wed, 06 Jun 2018 05:05:54 +1200 In-Reply-To: <6468672194d6d77797b7abf854a568d9@webmail.orcon.net.nz> X-Sender: psainty@orcon.net.nz X-GeoIP: -- X-Spam_score: -2.9 X-Spam_score_int: -28 X-Spam_bar: -- X-BeenThere: debbugs-submit@debbugs.gnu.org X-Mailman-Version: 2.1.18 Precedence: list X-detected-operating-system: by eggs.gnu.org: GNU/Linux 2.2.x-3.x [generic] X-Received-From: 208.118.235.43 X-BeenThere: bug-gnu-emacs@gnu.org List-Id: "Bug reports for GNU Emacs, the Swiss army knife of text editors" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Errors-To: bug-gnu-emacs-bounces+geb-bug-gnu-emacs=m.gmane.org@gnu.org Original-Sender: "bug-gnu-emacs" Xref: news.gmane.org gmane.emacs.bugs:147039 Archived-At: On 2018-06-06 04:36, Phil Sainty wrote: > On 2018-06-06 04:24, Robert Pluim wrote: >> What if this hypothetical emacs was deliberately started without a >> server running, since it contains sensitive information? Starting a >> server when receiving a signal has now opened up access to that emacs >> where none existed before. > > Certainly -- if we *are* treating emacs servers in general as a > security > risk, then the concern seems valid. Of course if the attacker can edit files in the user's ~/.emacs.d then there's already nothing to stop them from adding a custom [sigusr1] binding to the user's init file or some other loaded file in their config (or site-start.el or a core library if they had root), and enabling the behaviour we're discussing for the user's future emacs sessions (albeit in a way which might be more apparent to the user, depending on how they manage their config). -Phil