Doc #66539 [Opn->Csd]: [RU] [ZH] http fopen wrapper advises to use header injection via user_agent

From: Date: Fri, 26 Dec 2014 19:28:17 +0000
Subject: Doc #66539 [Opn->Csd]: [RU] [ZH] http fopen wrapper advises to use header injection via user_agent
References: 1  Groups: php.doc.bugs 
Request: Send a blank email to doc-bugs+get-11758@lists.php.net to get a copy of this message
Edit report at https://bugs.php.net/bug.php?id=66539&edit=1 ID: 66539 Updated by: irker@php.net Reported by: vovan-ve at yandex dot ru Summary: [RU] [ZH] http fopen wrapper advises to use header injection via user_agent -Status: Open +Status: Closed Type: Documentation Problem Package: Translation problem PHP Version: Irrelevant -Assigned To: +Assigned To: irker Block user comment: N Private report: N New Comment: This bug has been fixed in the documentation's XML sources. Since the online and downloadable versions of the documentation need some time to get updated, we would like to ask you to be a bit patient. Thank you for the report, and for helping us make our documentation better. Previous Comments: ------------------------------------------------------------------------ [2014-01-22 02:43:24] vovan-ve at yandex dot ru Description: ------------ Some documentation translations about HTTP fopen wrapper (http://php.net/manual/ru/wrappers.http.php) has Example 2, which advises to use header injection via 'user_agent' ini option: ini_set('user_agent', "PHP\r\nX-MyCustomHeader: Foo"); I think, it is not good practice to do such things in official documentation. Affected translations are Russian and Chinese. Other translations has no Example 2. Also there are bug reports about injection in user_agent: #52979 and #60668. Its status is "Not a bug". But it IS a bug. But it is another story. ------------------------------------------------------------------------ -- Edit this bug report at https://bugs.php.net/bug.php?id=66539&edit=1

« previous php.doc.bugs (#11758) next »