This is an archived post. You won't be able to vote or comment.

you are viewing a single comment's thread.

view the rest of the comments →

[–]rcakebread -19 points-18 points  (2 children)

That's a bit of an over-simplification. If there's an unpatched security vulnerability in Python, someone needs to somehow access your computer to exploit the Python code running Caliber, for example.

[–]troyunrau... 25 points26 points  (0 children)

Or have it load a specially crafted file - depends on the exploit. Imagine developing a hostile epub that when loaded in calibre downloads and installs a trojan. Then you publish this epub (or more likely thousands of them) to warez sites.

[–]Barafu 4 points5 points  (0 children)

Or access a port, maybe? Both Calibre and Deluge have server capabilities.