From mboxrd@z Thu Jan 1 00:00:00 1970 Path: news.gmane.io!.POSTED.blaine.gmane.org!not-for-mail From: Eli Zaretskii Newsgroups: gmane.emacs.bugs Subject: bug#44018: Don't consider play-sound-file to be a 'safe' function Date: Thu, 15 Oct 2020 20:26:47 +0300 Message-ID: <83zh4nwgbs.fsf@gnu.org> References: <5A2CDAEA-03CF-4F92-AF9D-40421A9B362E@acm.org> Mime-Version: 1.0 Content-Type: text/plain; charset=utf-8 Content-Transfer-Encoding: 8bit Injection-Info: ciao.gmane.io; posting-host="blaine.gmane.org:116.202.254.214"; logging-data="561"; mail-complaints-to="usenet@ciao.gmane.io" Cc: 44018@debbugs.gnu.org To: Mattias =?UTF-8?Q?Engdeg=C3=A5rd?= Original-X-From: bug-gnu-emacs-bounces+geb-bug-gnu-emacs=m.gmane-mx.org@gnu.org Thu Oct 15 19:27:12 2020 Return-path: Envelope-to: geb-bug-gnu-emacs@m.gmane-mx.org Original-Received: from lists.gnu.org ([209.51.188.17]) by ciao.gmane.io with esmtps (TLS1.2:ECDHE_RSA_AES_256_GCM_SHA384:256) (Exim 4.92) (envelope-from ) id 1kT71z-000AaF-SY for geb-bug-gnu-emacs@m.gmane-mx.org; Thu, 15 Oct 2020 19:27:11 +0200 Original-Received: from localhost ([::1]:54714 helo=lists1p.gnu.org) by lists.gnu.org with esmtp (Exim 4.90_1) (envelope-from ) id 1kT71y-0002J5-Uy for geb-bug-gnu-emacs@m.gmane-mx.org; Thu, 15 Oct 2020 13:27:10 -0400 Original-Received: from eggs.gnu.org ([2001:470:142:3::10]:53706) by lists.gnu.org with esmtps (TLS1.2:ECDHE_RSA_AES_256_GCM_SHA384:256) (Exim 4.90_1) (envelope-from ) id 1kT71q-0002Ig-2F for bug-gnu-emacs@gnu.org; Thu, 15 Oct 2020 13:27:02 -0400 Original-Received: from debbugs.gnu.org ([209.51.188.43]:44943) by eggs.gnu.org with esmtps (TLS1.2:ECDHE_RSA_AES_128_GCM_SHA256:128) (Exim 4.90_1) (envelope-from ) id 1kT71p-0006Ou-OA for bug-gnu-emacs@gnu.org; Thu, 15 Oct 2020 13:27:01 -0400 Original-Received: from Debian-debbugs by debbugs.gnu.org with local (Exim 4.84_2) (envelope-from ) id 1kT71p-0003tC-Jg for bug-gnu-emacs@gnu.org; Thu, 15 Oct 2020 13:27:01 -0400 X-Loop: help-debbugs@gnu.org Resent-From: Eli Zaretskii Original-Sender: "Debbugs-submit" Resent-CC: bug-gnu-emacs@gnu.org Resent-Date: Thu, 15 Oct 2020 17:27:01 +0000 Resent-Message-ID: Resent-Sender: help-debbugs@gnu.org X-GNU-PR-Message: followup 44018 X-GNU-PR-Package: emacs Original-Received: via spool by 44018-submit@debbugs.gnu.org id=B44018.160278281914942 (code B ref 44018); Thu, 15 Oct 2020 17:27:01 +0000 Original-Received: (at 44018) by debbugs.gnu.org; 15 Oct 2020 17:26:59 +0000 Original-Received: from localhost ([127.0.0.1]:56489 helo=debbugs.gnu.org) by debbugs.gnu.org with esmtp (Exim 4.84_2) (envelope-from ) id 1kT71n-0003sw-9q for submit@debbugs.gnu.org; Thu, 15 Oct 2020 13:26:59 -0400 Original-Received: from eggs.gnu.org ([209.51.188.92]:46856) by debbugs.gnu.org with esmtp (Exim 4.84_2) (envelope-from ) id 1kT71l-0003si-Nw for 44018@debbugs.gnu.org; Thu, 15 Oct 2020 13:26:58 -0400 Original-Received: from fencepost.gnu.org ([2001:470:142:3::e]:55147) by eggs.gnu.org with esmtp (Exim 4.90_1) (envelope-from ) id 1kT71g-0006OX-Dx; Thu, 15 Oct 2020 13:26:52 -0400 Original-Received: from [176.228.60.248] (port=3290 helo=home-c4e4a596f7) by fencepost.gnu.org with esmtpsa (TLS1.2:RSA_AES_256_CBC_SHA1:256) (Exim 4.82) (envelope-from ) id 1kT71f-00023r-59; Thu, 15 Oct 2020 13:26:51 -0400 In-Reply-To: <5A2CDAEA-03CF-4F92-AF9D-40421A9B362E@acm.org> (message from Mattias =?UTF-8?Q?Engdeg=C3=A5rd?= on Thu, 15 Oct 2020 18:55:26 +0200) X-BeenThere: debbugs-submit@debbugs.gnu.org X-Mailman-Version: 2.1.18 Precedence: list X-BeenThere: bug-gnu-emacs@gnu.org List-Id: "Bug reports for GNU Emacs, the Swiss army knife of text editors" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Errors-To: bug-gnu-emacs-bounces+geb-bug-gnu-emacs=m.gmane-mx.org@gnu.org Original-Sender: "bug-gnu-emacs" Xref: news.gmane.io gmane.emacs.bugs:190617 Archived-At: > From: Mattias EngdegÄrd > Date: Thu, 15 Oct 2020 18:55:26 +0200 > > We should remove play-sound-file from the list of 'safe' functions in unsafep.el. > The risks outweigh the benefits here; this is just basic security engineering. > The attack surface of play-sound-file is considerable. Any details for the uninitiated, or pointers to the info? Are the risks the same on all the supported platforms, or just on some? Thanks.