-
Notifications
You must be signed in to change notification settings - Fork 2
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Handling document catalog dictionary in an encrypted doc not specified #439
Comments
Wouldn't a catalog in a non-encrypted object stream (with an Identity Crypt filter) also allow cleartext metadata? |
Can you please be more precise? |
PDF DigSig TWG is on board with a blanket prohibition on putting the catalog inside an encrypted ObjStm (i.e. cleartext object streams in otherwise encrypted documents are fair game), predicated on the assumption that such documents don't really circulate today because most mainstream PDF viewers wouldn't be able to read them. |
Proposed solution wording in 2 places:
|
The catalog only needs to be forbidden in encrypted object streams. There is no need to disallow it in not encrypted ones. |
PDF TWG agree |
The current spec does not state anything about whether the document catalog dictionary can be in a ObjStm in an encrypted document. Allowing it to be so would prevent the use of cleartext metadata (since you need to be able to read the catalog w/o decryption), so most implementations do NOT put it in one in that case, nor can they read such a file.
Recommend we put a specific SHALL in the spec to address this case.
The text was updated successfully, but these errors were encountered: