Thomas Roessler <[EMAIL PROTECTED]>:

> > Perhaps another solution would be to have a separate
> > suid program that remembers the passphrase and
> > communicates somehow with the mutt process ...
> 
> This would be useless, since mutt would have to store that
> communication somewhere.  Thus, the problem would bite
> itself into the tail.

You're right, of course, though you would get the slight advantage of
mutt not having to store the passphrase for very long, so it would be
unlikely that it would be swapped out in that time.

To be really safe the separate suid program would have to communicate
directly with GnuPG. Perhaps the separate passphrase-remembering
program could spawn GnuPG when requested by Mutt ... I'm just
speculating here ...

Edmund

Reply via email to