Sec Bug->Bug #74864 [Opn]: MYSQL_ATTR_SSL_VERIFY_SERVER_CERT undefined
| From: | stas@php.net | Date: | Thu, 06 Jul 2017 17:39:48 +0000 |
| Subject: | Sec Bug->Bug #74864 [Opn]: MYSQL_ATTR_SSL_VERIFY_SERVER_CERT undefined | ||
| References: | 1 | Groups: | php.bugs |
| Request: | Send a blank email to php-bugs+get-209862@lists.php.net to get a copy of this message | ||
Edit report at https://bugs.php.net/bug.php?id=74864&edit=1
ID: 74864
Updated by: stas@php.net
Reported by: andrewjohnmcgrath at gmail dot com
Summary: MYSQL_ATTR_SSL_VERIFY_SERVER_CERT undefined
Status: Open
-Type: Security
+Type: Bug
Package: PDO MySQL
Operating System: ubuntu
PHP Version: 7.0.21
Block user comment: N
Private report: Y
Previous Comments:
------------------------------------------------------------------------
[2017-07-06 11:59:06] remi@php.net
Can't reproduce
$ php70 -v
PHP 7.0.21 (cli) (built: Jul 5 2017 14:57:12) ( NTS )
$ php70 -r 'var_dump(PDO::MYSQL_ATTR_SSL_VERIFY_SERVER_CERT);'
int(1014)
------------------------------------------------------------------------
[2017-07-06 11:49:52] andrewjohnmcgrath at gmail dot com
Description:
------------
As of this morning when making reference to PDO::MYSQL_ATTR_SSL_VERIFY_SERVER_CERT we encounter an
exception:
Undefined class constant 'MYSQL_ATTR_SSL_VERIFY_SERVER_CERT'. I can only assume this was
somehow left out of the latest build or the name of this constant has changed [in which case
it's an unintended breaking change].
This has caused us to disable SSL over MySQL [hence my classification].
Test script:
---------------
<?php
$options[PDO::MYSQL_ATTR_SSL_VERIFY_SERVER_CERT] = false; //should execute cleanly, but currently
does not
Expected result:
----------------
PDO::MYSQL_ATTR_SSL_VERIFY_SERVER_CERT should exist
Actual result:
--------------
Error encountered:
Undefined class constant 'MYSQL_ATTR_SSL_VERIFY_SERVER_CERT'
------------------------------------------------------------------------
--
Edit this bug report at https://bugs.php.net/bug.php?id=74864&edit=1