X-Git-Url: http://git.vanrenterghem.biz/git.ikiwiki.info.git/blobdiff_plain/8440a771c10c20c4be0a65a50c8bf05754e3fd4d..6b6033607d603c69a55187027df3c7fa1bf45d61:/doc/security.mdwn diff --git a/doc/security.mdwn b/doc/security.mdwn index a3e387218..42795b63e 100644 --- a/doc/security.mdwn +++ b/doc/security.mdwn @@ -83,12 +83,16 @@ ikiwiki does not allow cgi scripts to be published as part of the wiki. Or rather, the script is published, but it's not marked executable, so hopefully your web server will not run it. -## --gen-wrapper might generate insecure wrappers +## suid wrappers -ikiwiki --gen-wrapper is intended to generate a wrapper program that +ikiwiki --wrapper is intended to generate a wrapper program that runs ikiwiki to update a given wiki. The wrapper can in turn be made suid, for example to be used in a [[post-commit]] hook by people who cannot write to the html pages, etc. If the wrapper script is made suid, then any bugs in this wrapper would be security holes. The wrapper is written as securely as I know how, is based on code that has a history of security use long before ikiwiki, and there's been no problem yet. + +## shell exploits + +ikiwiki does not expose untrusted data to the shell. In fact it doesn't use system() at all, and the only use of backticks is on data supplied by the wiki admin. And it runs with taint checks on of course.. \ No newline at end of file