[prev in list] [next in list] [prev in thread] [next in thread] 

List:       bash-bug
Subject:    [Fwd: [KDE Bug 124960] konsole/bash must not execute CR unconfirmed prompt commands on exit signals]
From:       thomas schorpp <t.schorpp () gmx ! de>
Date:       2006-04-07 7:25:12
Message-ID: 443613D8.5070302 () gmx ! de
[Download RAW message or body]

From: schorpp
To: bug-bash@gnu.org,bash@packages.debian.org
Subject: -see mail subject-

Configuration Information [Automatically generated, do not change]:
Machine: i386
OS: linux-gnu
Compiler: gcc
Compilation CFLAGS:  -DPROGRAM='bash' -DCONF_HOSTTYPE='i386' \
-DCONF_OSTYPE='linux-gnu' -DCONF_MACHTYPE='i386-pc-linux-gnu' -DCONF_VENDOR='pc' \
-DSHELL -DHAVE_CONFIG_H  -I.  -I../bash -I../bash/include -I../bash/lib  -g -O2 uname \
output: Linux tom1.schorpp.dyndns.dk 2.6.16 #1 PREEMPT Tue Mar 21 01:38:42 CET 2006 \
i686 GNU/Linux Machine Type: i386-pc-linux-gnu

Bash Version: 2.05b
Patch Level: 0
Release Status: release

Description:
        -see attachments-

Repeat-By:
        -see attachments-

y
tom


["[Bug 124960] konsole must not execute CR unconfirmed prompt
	commands on exitsignals" (message/rfc822)]

Return-Path: <anonymous@ktown.kde.org>
X-Flags: 0000
Delivered-To: GMX delivery to t.schorpp@gmx.de
Received: (qmail invoked by alias); 07 Apr 2006 06:59:42 -0000
Received: from ktown.kde.org (HELO ktown.kde.org) [131.246.120.250]
	by mx0.gmx.net (mx038) with SMTP; 07 Apr 2006 08:59:42 +0200
Received: (qmail 6674 invoked by uid 30); 7 Apr 2006 06:59:41 -0000
Date: 7 Apr 2006 06:59:41 -0000
Message-ID: <20060407065941.6673.qmail@ktown.kde.org>
From: thomas schorpp <t.schorpp@gmx.de>
To: t.schorpp@gmx.de
Sender: owner@bugs.kde.org
Reply-To: 124960@bugs.kde.org
Subject: [Bug 124960] konsole must not execute CR unconfirmed prompt commands
	on exit signals 
Content-Type: text/plain; charset="utf-8"   
X-Bugzilla-URL: http://bugs.kde.org/   
X-Bugzilla-Reason: Reporter   
Precedence: bulk 
In-Reply-To: <20060405111840.124960.t.schorpp@gmx.de>  
X-GMX-Antivirus: -1 (not scanned, may not use virus scanner)
X-GMX-Antispam: 0 (Mail was not recognized as spam)
X-GMX-UID: sGBUEBkrbXBtnsHhNzU2ODYqLyUmZQgA

------- You are receiving this mail because: -------
You reported the bug, or are watching the reporter.
         
http://bugs.kde.org/show_bug.cgi?id=124960         




------- Additional Comments From t.schorpp gmx de  2006-04-07 08:59 -------
yes:

tom1:~# ls -l konsole.txt
-rw-r--r--  1 root root 5 Apr  7 08:29 konsole.txt

tom1:~# grep konsole.txt .bash_history
echo shit > konsole.txt

tom1:~# tail .bash_history
...
echo shit > konsole.txt

schorpp tom1:~$ tail .bash_history
...
su -

now is konsole firing the echo on signal or bash on signal?
i cant see it clearly in the konsole sources.
should i forward a copy of this bug to bashbugs gnu org just 
to be sure the gnu guys are investigating this too?



["[Bug 124960] konsole must not execute CR unconfirmed prompt
	commands on exitsignals" (message/rfc822)]

Return-Path: <anonymous@ktown.kde.org>
X-Flags: 1001
Delivered-To: GMX delivery to t.schorpp@gmx.de
Received: (qmail invoked by alias); 06 Apr 2006 21:51:06 -0000
Received: from ktown.kde.org (HELO ktown.kde.org) [131.246.120.250]
	by mx0.gmx.net (mx085) with SMTP; 06 Apr 2006 23:51:06 +0200
Received: (qmail 10040 invoked by uid 30); 6 Apr 2006 21:51:05 -0000
Date: 6 Apr 2006 21:51:05 -0000
Message-ID: <20060406215105.10039.qmail@ktown.kde.org>
From: Philip Rodrigues <phil@kde.org>
To: t.schorpp@gmx.de
Sender: owner@bugs.kde.org
Reply-To: 124960@bugs.kde.org
Subject: [Bug 124960] konsole must not execute CR unconfirmed prompt commands
	on exit signals 
Content-Type: text/plain; charset="utf-8"   
X-Bugzilla-URL: http://bugs.kde.org/   
X-Bugzilla-Reason: Reporter   
Precedence: bulk 
In-Reply-To: <20060405111840.124960.t.schorpp@gmx.de>  
X-GMX-Antivirus: -1 (not scanned, may not use virus scanner)
X-GMX-Antispam: 0 (Mail was not recognized as spam)
X-GMX-UID: fbUAcBZBRkkeudDpdmVqamFmdWkvKJMi

------- You are receiving this mail because: -------
You reported the bug, or are watching the reporter.
         
http://bugs.kde.org/show_bug.cgi?id=124960         
phil kde org changed:

           What    |Removed                     |Added
----------------------------------------------------------------------------
           Severity|crash                       |normal
             Status|UNCONFIRMED                 |NEW
      everconfirmed|0                           |1



------- Additional Comments From phil kde org  2006-04-06 23:51 -------
Same here. Only occurs when 'su' has been used. I didn't try 'su -' though. Do you \
get the same problem with 'su -'?


["[Bug 124960] konsole must not execute CR unconfirmed prompt
	commands on exitsignals" (message/rfc822)]

Return-Path: <anonymous@ktown.kde.org>
X-Flags: 0000
Delivered-To: GMX delivery to t.schorpp@gmx.de
Received: (qmail invoked by alias); 05 Apr 2006 19:01:56 -0000
Received: from ktown.kde.org (HELO ktown.kde.org) [131.246.120.250]
	by mx0.gmx.net (mx074) with SMTP; 05 Apr 2006 21:01:56 +0200
Received: (qmail 25748 invoked by uid 30); 5 Apr 2006 19:01:56 -0000
Date: 5 Apr 2006 19:01:56 -0000
Message-ID: <20060405190156.25747.qmail@ktown.kde.org>
From: thomas schorpp <t.schorpp@gmx.de>
To: t.schorpp@gmx.de
Sender: owner@bugs.kde.org
Reply-To: 124960@bugs.kde.org
Subject: [Bug 124960] konsole must not execute CR unconfirmed prompt commands
	on exit signals 
Content-Type: text/plain; charset="utf-8"   
X-Bugzilla-URL: http://bugs.kde.org/   
X-Bugzilla-Reason: Reporter   
Precedence: bulk 
In-Reply-To: <20060405111840.124960.t.schorpp@gmx.de>  
X-GMX-Antivirus: -1 (not scanned, may not use virus scanner)
X-GMX-Antispam: 0 (Mail was not recognized as spam)
X-GMX-UID: RH1Bd/stODBpyM7ydmVMO041Ji9SWtJL

------- You are receiving this mail because: -------
You reported the bug, or are watching the reporter.
         
http://bugs.kde.org/show_bug.cgi?id=124960         




------- Additional Comments From t.schorpp gmx de  2006-04-05 21:01 -------
CR=Carriage Return, Enter Key

1. open konsole
2. su to root
3. type some exe/script call like "echo shit_happens > 124960.txt" -dont press enter-
4. shutdown system with kde logout.

the command written at the prompt gets executed without confirmation 
by enter.



["[Bug 124960] konsole must not execute CR unconfirmed prompt
	commands on exitsignals" (message/rfc822)]

Return-Path: <anonymous@ktown.kde.org>
X-Flags: 0000
Delivered-To: GMX delivery to t.schorpp@gmx.de
Received: (qmail invoked by alias); 05 Apr 2006 16:31:30 -0000
Received: from ktown.kde.org (HELO ktown.kde.org) [131.246.120.250]
	by mx0.gmx.net (mx090) with SMTP; 05 Apr 2006 18:31:30 +0200
Received: (qmail 21045 invoked by uid 30); 5 Apr 2006 16:31:30 -0000
Date: 5 Apr 2006 16:31:30 -0000
Message-ID: <20060405163130.21044.qmail@ktown.kde.org>
From: Philip Rodrigues <phil@kde.org>
To: t.schorpp@gmx.de
Sender: owner@bugs.kde.org
Reply-To: 124960@bugs.kde.org
Subject: [Bug 124960] konsole must not execute CR unconfirmed prompt commands
	on exit signals 
Content-Type: text/plain; charset="utf-8"   
X-Bugzilla-URL: http://bugs.kde.org/   
X-Bugzilla-Reason: Reporter   
Precedence: bulk 
In-Reply-To: <20060405111840.124960.t.schorpp@gmx.de>  
X-GMX-Antivirus: -1 (not scanned, may not use virus scanner)
X-GMX-Antispam: 0 (Mail was not recognized as spam)
X-GMX-UID: 18IKfOE5YW0+zsDgZGdpbW50amthc9vH

------- You are receiving this mail because: -------
You reported the bug, or are watching the reporter.
         
http://bugs.kde.org/show_bug.cgi?id=124960         




------- Additional Comments From phil kde org  2006-04-05 18:31 -------
I don't understand what you mean by CR confirmation. Could you explain more fully, \
and give the steps I would need to take to reproduce the bug?


["[Bug 124960] konsole must not execute CR unconfirmed prompt
	commands on exitsignals" (message/rfc822)]

Return-Path: <anonymous@ktown.kde.org>
X-Flags: 1001
Delivered-To: GMX delivery to t.schorpp@gmx.de
Received: (qmail invoked by alias); 05 Apr 2006 09:25:14 -0000
Received: from ktown.kde.org (HELO ktown.kde.org) [131.246.120.250]
	by mx0.gmx.net (mx037) with SMTP; 05 Apr 2006 11:25:14 +0200
Received: (qmail 25146 invoked by uid 30); 5 Apr 2006 09:25:13 -0000
Date: 5 Apr 2006 09:25:13 -0000
Message-ID: <20060405092513.25145.qmail@ktown.kde.org>
From: thomas schorpp <t.schorpp@gmx.de>
To: t.schorpp@gmx.de
Sender: owner@bugs.kde.org
Reply-To: 124960@bugs.kde.org
Subject: [Bug 124960] konsole must not execute CR unconfirmed prompt commands
	on exit signals 
Content-Type: text/plain; charset="utf-8"   
X-Bugzilla-URL: http://bugs.kde.org/   
X-Bugzilla-Reason: Reporter   
Precedence: bulk 
In-Reply-To: <20060405111840.124960.t.schorpp@gmx.de>  
X-GMX-Antivirus: -1 (not scanned, may not use virus scanner)
X-GMX-Antispam: 0 (Mail was not recognized as spam)
X-GMX-UID: yLsBdQltIyd1iIH2cWZraGxaa2FkZtXz

------- You are receiving this mail because: -------
You reported the bug, or are watching the reporter.
         
http://bugs.kde.org/show_bug.cgi?id=124960         




------- Additional Comments From t.schorpp gmx de  2006-04-05 11:25 -------
bash version is 2.05b-26 debian stable.



["[Bug 124960] New: konsole must not execute CR unconfirmed prompt
	commandson exit signals" (message/rfc822)]

Return-Path: <anonymous@ktown.kde.org>
X-Flags: 1001
Delivered-To: GMX delivery to t.schorpp@gmx.de
Received: (qmail invoked by alias); 05 Apr 2006 09:18:42 -0000
Received: from ktown.kde.org (HELO ktown.kde.org) [131.246.120.250]
	by mx0.gmx.net (mx001) with SMTP; 05 Apr 2006 11:18:42 +0200
Received: (qmail 21573 invoked by uid 30); 5 Apr 2006 09:18:41 -0000
Date: 5 Apr 2006 09:18:41 -0000
From: thomas schorpp <t.schorpp@gmx.de>
To: t.schorpp@gmx.de
Sender: owner@bugs.kde.org
Reply-To: 124960@bugs.kde.org
Subject: [Bug 124960] New: konsole must not execute CR unconfirmed prompt
	commands on exit signals 
Content-Type: text/plain; charset="utf-8"   
X-Bugzilla-URL: http://bugs.kde.org/   
X-Bugzilla-Reason: Reporter   
Precedence: bulk 
Message-ID: <20060405111840.124960.t.schorpp@gmx.de>  
X-GMX-Antivirus: -1 (not scanned, may not use virus scanner)
X-GMX-Antispam: 0 (Mail was not recognized as spam)
X-GMX-UID: FuJWBVMxfW4o1J7JcmRodW5mdmllcoUg

------- You are receiving this mail because: -------
You reported the bug, or are watching the reporter.
         
http://bugs.kde.org/show_bug.cgi?id=124960         
           Summary: konsole must not execute CR unconfirmed prompt commands
                    on exit signals
           Product: konsole
           Version: unspecified
          Platform: Debian testing
        OS/Version: Linux
            Status: UNCONFIRMED
          Severity: crash
          Priority: NOR
         Component: general
        AssignedTo: konsole-devel kde org
        ReportedBy: t.schorpp gmx de


Version:            (using KDE KDE 3.5.2)
Installed from:    Debian testing/unstable Packages
OS:                Linux

tom1:~# hdlock (without CR execution confirmation!), a customer script to lock the hd \
drives with ata-security is executed on kde logout->system shutdown and respective \
signals.

konsole must not execute scripts or call any CR-unconfirmed commands/executables at \
exit  signals in any case.

bug severity was set to maximum cause this is a system security hazard that leaves 
the system in a broken state.

y
tom



[prev in list] [next in list] [prev in thread] [next in thread] 

Configure | About | News | Add a list | Sponsored by KoreLogic