Get the latest tech news

StarDict sends X11 clipboard to remote servers


StarDict is a GPLv3-licensed cross-platform dictionary application. It includes dictionaries f [...]

It also has a glaring security problem: while running on X11, using Debian's default configuration, it will send a user's text selections over unencrypted HTTP to two remote servers. In response, Xiao pointed out that the package description can be read by any user who chooses to install the software, and it does mention the scan feature. Part of the justification for moving to Wayland over X11 is to make security vulnerabilities relating to one application spying on another more difficult to introduce.

Get the Android app

Or read this on Hacker News

Read more on:

Photo of x11

x11

Photo of StarDict

StarDict

Photo of remote servers

remote servers

Related news:

News photo

Star leaky app of the week: StarDict

News photo

How to configure X11 in a simple way

News photo

Wayback 0.1 debuts as early Wayland server for X11 diehards