This repository was archived by the owner on Aug 6, 2021. It is now read-only.
Commit 1e5f0b2
Michael Schams
[TASK] Document risk of executable binaries shipped with extensions
TYPO3 extensions possibly contain binaries, e.g. Unix/Linux ELF files
(compiled executables). Using these is a security risk, because it can
not be verified what these files really do (unless they are
reverse-engineered or dissected likewise).
This patch adds a section to the Security Guide that explains the risks
and recommends to use binaries from trusted sources only.
Chapter: Guidelines for Integrators -> TYPO3 extensions
Resolves: #59398
Reviewed-by: Helmut Hummel1 parent b11fc4f commit 1e5f0b2
1 file changed
+20
-0
lines changed| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
78 | 78 | | |
79 | 79 | | |
80 | 80 | | |
| 81 | + | |
| 82 | + | |
| 83 | + | |
| 84 | + | |
| 85 | + | |
| 86 | + | |
| 87 | + | |
| 88 | + | |
| 89 | + | |
| 90 | + | |
| 91 | + | |
| 92 | + | |
| 93 | + | |
| 94 | + | |
| 95 | + | |
| 96 | + | |
| 97 | + | |
| 98 | + | |
| 99 | + | |
| 100 | + | |
81 | 101 | | |
82 | 102 | | |
83 | 103 | | |
| |||
0 commit comments