Doc #66539 [Opn->Csd]: [RU] [ZH] http fopen wrapper advises to use header injection via user_agent
| From: | irker@php.net | Date: | Fri, 26 Dec 2014 19:28:17 +0000 |
| Subject: | Doc #66539 [Opn->Csd]: [RU] [ZH] http fopen wrapper advises to use header injection via user_agent | ||
| References: | 1 | Groups: | php.doc.bugs |
| Request: | Send a blank email to doc-bugs+get-11758@lists.php.net to get a copy of this message | ||
Edit report at https://bugs.php.net/bug.php?id=66539&edit=1
ID: 66539
Updated by: irker@php.net
Reported by: vovan-ve at yandex dot ru
Summary: [RU] [ZH] http fopen wrapper advises to use header
injection via user_agent
-Status: Open
+Status: Closed
Type: Documentation Problem
Package: Translation problem
PHP Version: Irrelevant
-Assigned To:
+Assigned To: irker
Block user comment: N
Private report: N
New Comment:
This bug has been fixed in the documentation's XML sources. Since the
online and downloadable versions of the documentation need some time
to get updated, we would like to ask you to be a bit patient.
Thank you for the report, and for helping us make our documentation better.
Previous Comments:
------------------------------------------------------------------------
[2014-01-22 02:43:24] vovan-ve at yandex dot ru
Description:
------------
Some documentation translations about HTTP fopen wrapper
(http://php.net/manual/ru/wrappers.http.php) has Example 2, which advises to use header injection
via 'user_agent' ini option:
ini_set('user_agent', "PHP\r\nX-MyCustomHeader: Foo");
I think, it is not good practice to do such things in official documentation.
Affected translations are Russian and Chinese. Other translations has no Example 2.
Also there are bug reports about injection in user_agent: #52979 and #60668. Its status is "Not
a bug". But it IS a bug. But it is another story.
------------------------------------------------------------------------
--
Edit this bug report at https://bugs.php.net/bug.php?id=66539&edit=1