X SECURITY: allowed extensions for untrusted clients

Uecker, Martin Martin.Uecker at med.uni-goettingen.de
Wed Mar 28 16:15:39 UTC 2018


So what does it take to get this done? Should I a submit a
patch adding RENDER and PRESENT to the list of allowed
extensions.

The other major thing we are missing is isolation of different
untrusted clients. With those two changes, we could properly
isolate different clients from each other.

Martin 

Am Sonntag, den 15.10.2017, 16:46 -0700 schrieb Keith Packard:
> "Uecker, Martin" <Martin.Uecker at med.uni-goettingen.de> writes:
> 
> > The question is what security risks all the different extensions
> > may expose.
> 
> For things like Render and Present, they're no more serious than the
> existing core protocol. I'm pretty sure we could list the extensions
> which provide core-like functionality in an improved form and
> separate
> those from extensions which provide new functionality.
> 


More information about the xorg-devel mailing list