Bug #13247: Move_uploaded_file set wrong user and wrong group

From: Date: Tue, 11 Sep 2001 13:23:07 +0000
Subject: Bug #13247: Move_uploaded_file set wrong user and wrong group
Groups: php.dev 
Request: Send a blank email to php-dev+get-65774@lists.php.net to get a copy of this message
From: linux@infomaniak.ch Operating system: Cobalt OS PHP version: 4.0.4pl1 PHP Bug Type: Unknown/Other Function Bug description: Move_uploaded_file set wrong user and wrong group Here is my configure line : './configure' '--with-mysql' '--with-gd' '--with-ttf' '--enable-bcmath' '--enable-calendar' '--enable-memory-limit' '--enable-safe-mode' '--with-imap' '--enable-ftp' '--enable-sockets' '--with-apxs' The script that is used is as simple as : <? @move_uploaded_file($file, "/path/to/my/directory/filename"); ?> My Apache webserver runs as user and group httpd. Now the really annoying thing is that whenever my customer or myself upload a file, the uploaded file is correctly moved but the ownership is set to httpd.root ( user httpd and group root ) Now this is a real big problem for my ( even without considering the security hole it represents ) because my customers cannot manage to erase these files anymore afterwards via FTP, because their uid will not let them touch these files. -- Edit bug report at: http://bugs.php.net/?id=13247&edit=1

« previous php.dev (#65774) next »