stas Tue Jul 10 20:21:24 2007 UTC Modified files: (Branch: PHP_5_2) /php-src/ext/standard mail.c Log: Escape mail.force_extra_parameters value http://cvs.php.net/viewvc.cgi/php-src/ext/standard/mail.c?r1=1.87.2.1.2.5&r2=1.87.2.1.2.6&diff_format=u Index: php-src/ext/standard/mail.c diff -u php-src/ext/standard/mail.c:1.87.2.1.2.5 php-src/ext/standard/mail.c:1.87.2.1.2.6 --- php-src/ext/standard/mail.c:1.87.2.1.2.5 Fri Mar 30 00:28:58 2007 +++ php-src/ext/standard/mail.c Tue Jul 10 20:21:24 2007 @@ -16,7 +16,7 @@ +----------------------------------------------------------------------+ */ -/* $Id: mail.c,v 1.87.2.1.2.5 2007/03/30 00:28:58 iliaa Exp $ */ +/* $Id: mail.c,v 1.87.2.1.2.6 2007/07/10 20:21:24 stas Exp $ */ #include <stdlib.h> #include <ctype.h> @@ -166,7 +166,7 @@ } if (force_extra_parameters) { - extra_cmd = estrdup(force_extra_parameters); + extra_cmd = php_escape_shell_cmd(force_extra_parameters); } else if (extra_cmd) { extra_cmd = php_escape_shell_cmd(extra_cmd); }
-- PHP CVS Mailing List (http://www.php.net/) To unsubscribe, visit: http://www.php.net/unsub.php