nixpkgs/nixos/modules
euxane fee11ef959 nixos/fcgiwrap: fail eval with security assertion
This adds a security assertion when using the global instance of
fcgiwrap, which is vulnerable to a local privilege escalation.

This is in addition to the current evaluation warning, and is more in
line with being loud with security issues, similarly to with vulnerable
packages.

The evaluation failure can nevertheless be bypassed by setting:
`services.fcgiwrap.allowGlobalInstanceLocalPrivilegeEscalation = true`.
2024-08-08 02:28:32 +02:00
..
config nixos/no-x-libs: fix gjs 2024-06-17 23:44:04 +00:00
hardware nixos/hardware/printers: fix ppdOptions of ensured printers 2024-06-02 15:59:27 +00:00
i18n/input-method nixos: remove all uses of lib.mdDoc 2024-04-13 10:07:35 -07:00
image nixos: remove all uses of lib.mdDoc 2024-04-13 10:07:35 -07:00
installer Update nixos/modules/installer/tools/nix-fallback-paths.nix 2024-07-14 20:06:56 +02:00
misc nixos/locate: drop with lib{,.types}, misc cleanup 2024-06-11 13:48:30 +00:00
profiles profiles/qemu_guest: add virtio_gpu to initrd 2024-07-09 15:56:30 +02:00
programs programs/kde-pim: init 2024-07-27 22:07:50 +00:00
security nixos/polkit: Add package option 2024-06-26 09:43:05 +00:00
services nixos/fcgiwrap: fail eval with security assertion 2024-08-08 02:28:32 +02:00
system nixos/boot: use --replace-fail 2024-07-19 20:53:12 +00:00
tasks nixos/clevis: add support for parent encrypted zfs datasets 2024-06-24 18:48:25 +00:00
testing nixos/tests: set non-conflicting priority for logrotate disabling 2024-05-10 16:25:51 +03:00
virtualisation virtualisation/{docker,podman}: update nvidia-ctk warning 2024-07-28 11:25:19 +00:00
module-list.nix nixos/fcgiwrap-instances: backport isolated multi-instance module 2024-08-02 10:51:17 +02:00
rename.nix treewide: rename renamed sddm/displayManager settings 2024-04-08 21:56:38 +02:00