On Thu, Jul 15, 2010 at 02:09:23AM +0200, Marc Lehmann wrote:
> Accepting synthetic events is, of course, not a security hole.

Perhaps I am confused, but wouldn't this mean any program could run
arbitary commands via urxvt? Obviously this wouldn't normally be a
problem, but what about if I had a ``su'' session open? This would
(I think) allow arbitary commands to be run as root.


_______________________________________________
rxvt-unicode mailing list
[email protected]
http://lists.schmorp.de/cgi-bin/mailman/listinfo/rxvt-unicode

Reply via email to