Re: [RFC] [VOTE] is_literal
| From: | Hans Henrik Bergan | Date: | Fri, 16 Jul 2021 20:23:35 +0000 |
| Subject: | Re: [RFC] [VOTE] is_literal | ||
| References: | 1 2 3 | Groups: | php.internals |
| Request: | Send a blank email to internals+get-115444@lists.php.net to get a copy of this message | ||
short of a bug in esc_like(), i don't even see the vulnerability issue in
that code?
that sanitize call looks like a data corruption issue and i bet it fails to
search for binary data, but i don't see the critical vulnerability?