[Bug 58270] Re: uvf exception request konversation 0.19 --> 1.0
** Changed in: konversation (Ubuntu) Status: Confirmed => Fix Released -- uvf exception request konversation 0.19 --> 1.0 https://launchpad.net/bugs/58270 -- ubuntu-bugs mailing list ubuntu-bugs@lists.ubuntu.com https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs
[Bug 58270] Re: uvf exception request konversation 0.19 --> 1.0
Hi, Konversation's maintainer and release manager here. We interact with files to be sent or received via DCC via standard KDE/Qt library functions and KDE KIO, not ever by manually running commands on a shell. Also, note that the above feature is disabled by default. -- uvf exception request konversation 0.19 --> 1.0 https://launchpad.net/bugs/58270 -- kubuntu-bugs mailing list kubuntu-bugs@lists.ubuntu.com https://lists.ubuntu.com/mailman/listinfo/kubuntu-bugs
[Bug 58270] Re: uvf exception request konversation 0.19 --> 1.0
The only thing I noticed that might need additional checking is: * DCC file transfers now support file names containing spaces on send, receive and resume. The automatic replacement of spaces with underscores in file names can now be optionally disabled in the DCC preferences. Could somebody make sure that Konversation will never try to spawn commands via the shell (including the system() libc function) that operate on DCC-received files, at least not without escaping any characters not in a known-good set to avoid shell metacharacter expansion? Otherwise, this looks good, thanks. -- uvf exception request konversation 0.19 --> 1.0 https://launchpad.net/bugs/58270 -- ubuntu-bugs mailing list ubuntu-bugs@lists.ubuntu.com https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs
[Bug 58270] Re: uvf exception request konversation 0.19 --> 1.0
I support this request, the konversation developers have deliberately timed their release to be scheduled with Kubuntu. -- uvf exception request konversation 0.19 --> 1.0 https://launchpad.net/bugs/58270 -- kubuntu-bugs mailing list kubuntu-bugs@lists.ubuntu.com https://lists.ubuntu.com/mailman/listinfo/kubuntu-bugs
[Bug 58270] Re: uvf exception request konversation 0.19 --> 1.0
changelog attachment ** Changed in: konversation (Ubuntu) Assignee: (unassigned) => Brandon Holtsclaw Status: Unconfirmed => Confirmed -- uvf exception request konversation 0.19 --> 1.0 https://launchpad.net/bugs/58270 -- kubuntu-bugs mailing list kubuntu-bugs@lists.ubuntu.com https://lists.ubuntu.com/mailman/listinfo/kubuntu-bugs