all messages for Emacs-related lists mirrored at yhetil.org
 help / color / mirror / code / Atom feed
* RLO used in a criminal exploit
@ 2018-02-16  7:52 Eli Zaretskii
  2018-02-18  0:13 ` Richard Stallman
  0 siblings, 1 reply; 2+ messages in thread
From: Eli Zaretskii @ 2018-02-16  7:52 UTC (permalink / raw)
  To: emacs-devel

See

   https://securelist.com/zero-day-vulnerability-in-telegram/83800/

Emacs has the bidi-find-overridden-directionality function since Emacs
25.1, but AFAIK no Lisp program uses it to detect and prevent such
malicious attacks.  Sounds like it's high time we started using it in
email and network applications, and elsewhere.



^ permalink raw reply	[flat|nested] 2+ messages in thread

* Re: RLO used in a criminal exploit
  2018-02-16  7:52 RLO used in a criminal exploit Eli Zaretskii
@ 2018-02-18  0:13 ` Richard Stallman
  0 siblings, 0 replies; 2+ messages in thread
From: Richard Stallman @ 2018-02-18  0:13 UTC (permalink / raw)
  To: Eli Zaretskii; +Cc: emacs-devel

[[[ To any NSA and FBI agents reading my email: please consider    ]]]
[[[ whether defending the US Constitution against all enemies,     ]]]
[[[ foreign or domestic, requires you to follow Snowden's example. ]]]

  > Emacs has the bidi-find-overridden-directionality function since Emacs
  > 25.1, but AFAIK no Lisp program uses it to detect and prevent such
  > malicious attacks.  Sounds like it's high time we started using it in
  > email and network applications, and elsewhere.

Thank you for reminding us about this.

Who would like to write these changes?


-- 
Dr Richard Stallman
President, Free Software Foundation (https://gnu.org, https://fsf.org)
Internet Hall-of-Famer (https://internethalloffame.org)
Skype: No way! See https://stallman.org/skype.html.




^ permalink raw reply	[flat|nested] 2+ messages in thread

end of thread, other threads:[~2018-02-18  0:13 UTC | newest]

Thread overview: 2+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2018-02-16  7:52 RLO used in a criminal exploit Eli Zaretskii
2018-02-18  0:13 ` Richard Stallman

Code repositories for project(s) associated with this external index

	https://git.savannah.gnu.org/cgit/emacs.git
	https://git.savannah.gnu.org/cgit/emacs/org-mode.git

This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.