Home page logo
/

bugtraq logo Bugtraq mailing list archives

Re: [Full-disclosure] Critical PHP bug - act ASAP if you are running web with sensitive data
From: "John Bond" <john.r.bond () gmail com>
Date: Tue, 4 Apr 2006 14:29:26 +0100

On 3/29/06, Jeff Rosowski <rosowskij () ie ymp gov> wrote:

It also doesn't affect all versions of PHP.  on 5.0.5, it returns \0
followed by however many Ss you put after it. And your right you wouldn't
trust user imput like that.

_______________________________________________

I get this behaviour on php v5.0.4 on windows box


  By Date           By Thread  

Current thread:
  • Re: [Full-disclosure] Critical PHP bug - act ASAP if you are running web with sensitive data John Bond (Apr 05)
[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]
AlienVault