tag 582204 +wontfix
severity 582204 wishlist
thank you
Francois,
I don't agree with you (however not much strongly). Security by
obscurity never worked and I am oposed of applying this patch. Hiding
version makes life harder for everybody else but attacker.
Ondrej
On Wed, May 19, 2010 at
On 2010-05-19 at 08:25:31, Ondřej Surý wrote:
I don't agree with you (however not much strongly). Security by
obscurity never worked and I am oposed of applying this patch. Hiding
version makes life harder for everybody else but attacker.
Hi Ondřej,
I certainly agree with you that this is
Package: php5
Version: 5.3.2-1
Severity: normal
Tags: patch
I'm sure this has been mentioned before, but it would be nice if expose_php was
disabled by default in php.ini.
While these headers can be useful in development, they are also revealing the
exact PHP version that the server is running.
3 matches
Mail list logo