Bug #17490 Updated: serialize() generates a string that unserialize() can't handle

From: Date: Mon, 15 Jul 2002 05:00:08 +0000
Subject: Bug #17490 Updated: serialize() generates a string that unserialize() can't handle
References: 1  Groups: php.bugs 
Request: Send a blank email to php-bugs+get-14170@lists.php.net to get a copy of this message
 ID:               17490
 Updated by:       php-bugs@lists.php.net
 Reported By:      weyrick@roadsend.com
-Status:           Feedback
+Status:           No Feedback
 Bug Type:         Session related
 Operating System: linux rh7.2
 PHP Version:      4.2.1
 New Comment:

No feedback was provided for this bug for over a month, so it is
being suspended automatically. If you are able to provide the
information that was originally requested, please do so and change
the status of the bug back to "Open".


Previous Comments:
------------------------------------------------------------------------

[2002-06-21 11:21:59] nigel.king@nuth.northy.nhs.uk

Forgot to add that this is on Solaris 8, not linux.

------------------------------------------------------------------------

[2002-06-21 11:19:29] nigel.king@nuth.northy.nhs.uk

Not sure if this is relevant but...

during my final make run (thanks for the advice in CC=gcc) I noticed a
warning during the compilation of var_unserializer.c.

var_unserializer.c: In function 'php_var_unserialize':
var_unserializer.c: 308: warning: comparison is always false due to
limited range of data type

I don't know the code but I can imagine that unserialize could take the
wrong action and fail.  If this is the case then this is a bug.

------------------------------------------------------------------------

[2002-05-29 13:34:08] weyrick@roadsend.com

can you be more specific on why it's not a bug? if it's a spec, where
(and what) is that spec? or point me to the correct line of code in the
codebase.

unfortunately it's not easy for me to create a small script to
reproduce this, as the code that generates it includes a large library
of routines. it's obviously possible to generate it without all that,
but since i dont know exactly what's causing it it would be a lot of
trial and error figuring out how to reproduce it.

------------------------------------------------------------------------

[2002-05-29 13:11:31] yohgaki@php.net

Oops sorry. I must go to bed now. 
Could you make a short script for this bug?
 

------------------------------------------------------------------------

[2002-05-29 13:09:34] yohgaki@php.net

This is not a bug, but it is the way session module serializes
variables. It's a spec.

It can be fixed, though.
 

------------------------------------------------------------------------

The remainder of the comments for this report are too long. To view
the rest of the comments, please view the bug report online at
    http://bugs.php.net/17490

-- 
Edit this bug report at http://bugs.php.net/?id=17490&edit=1



Thread (26 messages)

« previous php.bugs (#14170) next »