Again, Voulnerability in 3.*-4.*

From: Date: Sat, 08 Jan 2000 13:36:45 +0000
Subject: Again, Voulnerability in 3.*-4.*
References: 1  Groups: php.dev 
Request: Send a blank email to php-dev+get-14400@lists.php.net to get a copy of this message
On Sat, 8 Jan 2000 vvs_php@nsrd.npi.msu.su wrote: > There is a problem with security in the file safe_mode.c (affects on > functions, that use _php3_checkuid: unlink, rmdir....). > So, the explanation. (UNIX, Apache, php3....) > I do not know, what is the idea of *s='\0'; before stat(yes, it puts the > end of the string to the beginning of the string) (who can explain > this?), so, everything works more or less fine without it. So, this string (*s='\0';) is correct, when mode > 2, so, maybe, if (s) { if(mode > 2) *s='\0'; OK?

« previous php.dev (#14400) next »