update news item, note this is a security fix release

master
Joey Hess 2007-11-26 15:35:23 -05:00
parent acf52a6373
commit b79547385a
1 changed files with 3 additions and 1 deletions

View File

@ -1,3 +1,5 @@
This is a security fix release, upgrade is recommended.
News for ikiwiki 2.14:
This version of ikiwiki is more picky about symlinks in the path leading
@ -14,4 +16,4 @@ ikiwiki 2.14 released with [[toggle text="these changes"]]
to the top of the srcdir. In certian unusual configurations, an attacker
who could commit to one of the parent directories of the srcdir could
use a symlink attack to cause ikiwiki to publish files elsewhere in the
filesystem. More details at <http://ikiwiki.info/security/#index29h2>"""]]
filesystem. More details [[here|security#index29h2]]