Re: Re: alternative to the fopen() hack in autoloaders
| From: | Stanislav Malyshev | Date: | Tue, 10 Nov 2009 18:16:58 +0000 |
| Subject: | Re: Re: alternative to the fopen() hack in autoloaders | ||
| References: | 1 2 | Groups: | php.internals |
| Request: | Send a blank email to internals+get-45999@lists.php.net to get a copy of this message | ||
Hi!
Alternatively include() could be extended to allow resources, so the above would turn info if ($fp = @fopen($file, 'r', true)) { include($fp); fclose($fp); }This would break security distinction between file ops and include ops, when URLs are allowed for open but not include. -- Stanislav Malyshev, Zend Software Architect stas@zend.com http://www.zend.com/ (408)253-8829 MSN: stas@zend.com