Re: File Upload Security fix

From: Date: Mon, 04 Sep 2000 14:59:30 +0000
Subject: Re: File Upload Security fix
References: 1  Groups: php.dev 
Request: Send a blank email to php-dev+get-31934@lists.php.net to get a copy of this message
> RL>> We probably need a way to mark a variable in the global symbol table as > RL>> non-overwritable during GPC handling. Note that this has nothing to do > RL>> with whether register_globals is on or off. This file upload security > RL>> vulnerability is due to a POST var overwriting another POST var in > RL>> whatever context it is in. > > That's not exactly right. When you are using not globals but > HTTP_POST_FILES you get a structure that cannot be overwritten by plain > variables. I guess that's what the reporter meant. No because he was actually talking about PHP 3 which did not have the HTTP_POST_FILES array. -Rasmus

« previous php.dev (#31934) next »