Again, Voulnerability in 3.*-4.*
| From: | vvs_php at nsrd dot npi dot msu dot su | Date: | Sat, 08 Jan 2000 13:36:45 +0000 |
| Subject: | Again, Voulnerability in 3.*-4.* | ||
| References: | 1 | Groups: | php.dev |
| Request: | Send a blank email to php-dev+get-14400@lists.php.net to get a copy of this message | ||
On Sat, 8 Jan 2000 vvs_php@nsrd.npi.msu.su wrote:
> There is a problem with security in the file safe_mode.c (affects on
> functions, that use _php3_checkuid: unlink, rmdir....).
> So, the explanation. (UNIX, Apache, php3....)
> I do not know, what is the idea of *s='\0'; before stat(yes, it puts the
> end of the string to the beginning of the string) (who can explain
> this?), so, everything works more or less fine without it.
So, this string (*s='\0';) is correct, when mode > 2, so, maybe,
if (s) {
if(mode > 2) *s='\0';
OK?