[Fwd: Re: [Bf-python] newbie]

Michel Selten michel.s at home.nl
Tue May 13 20:15:07 CEST 2003


On Tue, 2003-05-13 at 06:37, Jacek Popławski wrote:
> On Mon, May 12, 2003 at 10:47:08PM -0300, Willian Padovani Germano
wrote:
> > This can be a problem, really.  We're using a full-fledged language
> > (Python, of course) and so scripts can do whatever you can do in
> > Python.  That includes messing with any file in the system to which
the
> > user has permission to write or execute.  Pov-ray's own language can
do
> > that, too.  
> 
> Is it possible to create virus in Povray language?
> If not, they I see no reason to care about security in Blender Python.
> Sure, you can delete all your ${HOME} with Python script, but it's
your
> decision what script you are running, so only virus may be real
problem.

What if you get a .blend file from another user that you need for a
tutorial for example? In this .blend file, he added a script that is
executed on loading. So a malicious user can indeed delete all your
files in your $HOME.

With regards,
        Michel





More information about the Bf-python mailing list