iliaa Fri May 30 10:08:14 2003 EDT Modified files: /php4/ext/mysql php_mysql.c Log: Fixed bug #23888 (Missing input validation for flags parameter) Index: php4/ext/mysql/php_mysql.c diff -u php4/ext/mysql/php_mysql.c:1.190 php4/ext/mysql/php_mysql.c:1.191 --- php4/ext/mysql/php_mysql.c:1.190 Wed May 28 12:19:08 2003 +++ php4/ext/mysql/php_mysql.c Fri May 30 10:08:14 2003 @@ -18,7 +18,7 @@ +----------------------------------------------------------------------+ */ -/* $Id: php_mysql.c,v 1.190 2003/05/28 16:19:08 rasmus Exp $ */ +/* $Id: php_mysql.c,v 1.191 2003/05/30 14:08:14 iliaa Exp $ */ /* TODO: * @@ -525,6 +525,7 @@ } convert_to_string_ex(z_user); convert_to_string_ex(z_passwd); + convert_to_boolean_ex(z_new_link); user = Z_STRVAL_PP(z_user); passwd = Z_STRVAL_PP(z_passwd); new_link = Z_BVAL_PP(z_new_link); @@ -535,6 +536,7 @@ } convert_to_string_ex(z_user); convert_to_string_ex(z_passwd); + convert_to_long_ex(z_client_flags); user = Z_STRVAL_PP(z_user); passwd = Z_STRVAL_PP(z_passwd); client_flags = Z_LVAL_PP(z_client_flags); @@ -547,6 +549,8 @@ } convert_to_string_ex(z_user); convert_to_string_ex(z_passwd); + convert_to_boolean_ex(z_new_link); + convert_to_long_ex(z_client_flags); user = Z_STRVAL_PP(z_user); passwd = Z_STRVAL_PP(z_passwd); new_link = Z_BVAL_PP(z_new_link);
-- PHP CVS Mailing List (http://www.php.net/) To unsubscribe, visit: http://www.php.net/unsub.php