iliaa Sun Oct 16 22:42:51 2005 EDT Modified files: (Branch: PHP_4_4) /php-src/ext/curl curl.c Log: MFH: Further URL validations in safe_mode/open_basedir configs. http://cvs.php.net/diff.php/php-src/ext/curl/curl.c?r1=1.124.2.30.2.2&r2=1.124.2.30.2.3&ty=u Index: php-src/ext/curl/curl.c diff -u php-src/ext/curl/curl.c:1.124.2.30.2.2 php-src/ext/curl/curl.c:1.124.2.30.2.3 --- php-src/ext/curl/curl.c:1.124.2.30.2.2 Thu Oct 6 16:44:55 2005 +++ php-src/ext/curl/curl.c Sun Oct 16 22:42:51 2005 @@ -16,7 +16,7 @@ +----------------------------------------------------------------------+ */ -/* $Id: curl.c,v 1.124.2.30.2.2 2005/10/06 20:44:55 iliaa Exp $ */ +/* $Id: curl.c,v 1.124.2.30.2.3 2005/10/17 02:42:51 iliaa Exp $ */ #ifdef HAVE_CONFIG_H #include "config.h" @@ -76,7 +76,7 @@ RETURN_FALSE; \ } \ \ - if (php_check_open_basedir(tmp_url->path TSRMLS_CC) || \ + if (tmp_url->query || php_check_open_basedir(tmp_url->path TSRMLS_CC) || \ (PG(safe_mode) && !php_checkuid(tmp_url->path, "rb+", CHECKUID_CHECK_MODE_PARAM)) \ ) { \ php_url_free(tmp_url); \
-- PHP CVS Mailing List (http://www.php.net/) To unsubscribe, visit: http://www.php.net/unsub.php