Re: Bug #11890 Updated: linux exploitable

From: Date: Thu, 05 Jul 2001 07:10:10 +0000
Subject: Re: Bug #11890 Updated: linux exploitable
References: 1  Groups: php.dev 
Request: Send a blank email to php-dev+get-58957@lists.php.net to get a copy of this message
On Wed, 4 Jul 2001, Zak Greant wrote:

> Derick wrote:
>
> > Hello Zak,
> >
> > regarding this problem with the mail() function, I have a fix here where
> > the 5th parameter will be shell escaped (with php_shell_escape_cmd()). I
> > didn't commit it yet (because of ISP troubles), but if nobody thinks this
> > is a bad idea, I'll commit it tomorrow.
>
>     Hey Derick,
>
>     Excellent! :)
>
>     Should we be using php_escape_shell_arg() instead of
>     php_escape_shell_cmd()?

As far as I can see does shell_arg only escape the ' and shell_cmd the
following characters: #&;`'\"|*?~<>^()[]{}$\\\x0A\xFF so I think
_shell_cmd would be the best choice.

Derick

---------------------------------------------------------------------
        PHP: Scripting the Web - www.php.net - derick@php.net
             SRM: Site Resource Manager - www.vl-srm.net
---------------------------------------------------------------------



Thread (8 messages)

« previous php.dev (#58957) next »