Peres: Wayland Compositors - Why and How to Handle Privileged Clients!
Peres: Wayland Compositors - Why and How to Handle Privileged Clients!
Posted Feb 28, 2014 8:03 UTC (Fri) by deepfire (guest, #26138)In reply to: Peres: Wayland Compositors - Why and How to Handle Privileged Clients! by mathstuf
Parent article: Peres: Wayland Compositors - Why and How to Handle Privileged Clients!
Yes, I agree in that we ought to have separate means to close these weak spots.
And yes, whenever such security/flexibiility tradeoffs are introduced in future, they ought to be:
1. optional, with root-restrictable means of control
2. off by default
This is basic security, isn't it?