--- specs/Xext/security.tex 2007/02/02 01:16:40 1.1 +++ specs/Xext/security.tex 2007/02/02 01:26:23 @@ -363,6 +363,10 @@ by a trusted client, all attempts to map This includes mapping attempts resulting from MapWindow, MapSubwindows, ReparentWindow, and save-set processing. +However, if the parent of an InputOnly window owned by an untrusted +client is the root window, attempts to map that window will be performed +as expected. This is in line with the root window exceptions above. + \subsection{Image Security} It should be impossible for an untrusted client to retrieve the image