PHP 4.0 Bug #2727: Incorrect 401 Status Manipulation
| From: | mike at vservers dot php dot net | Date: | Mon, 15 Nov 1999 19:20:20 +0000 |
| Subject: | PHP 4.0 Bug #2727: Incorrect 401 Status Manipulation | ||
| Groups: | php.dev | ||
| Request: | Send a blank email to php-dev+get-12569@lists.php.net to get a copy of this message | ||
From: mike@vservers
Operating system: BSDI 4.01
PHP version: 4.0 Beta 2
PHP Bug Type: Other
Bug description: Incorrect 401 Status Manipulation
Using Apache 1.3.1 and PHP 4.0b2:
If there's an Apache directive for a custom 401 authorization required) error page, and that
error page file is a PHP file type, the PHP handler parses through the file and then changes the
request status from 401 to 200.
The result of this is that if you have a PHP enhanced 401 error page, PHP prevents your browser from
requesting a password because it changes the request status from a 401 to a 200.