dmitry          Tue Nov 29 06:03:34 2005 EDT

  Modified files:              (Branch: PHP_5_0)
    /php-src/ext/curl   interface.c 
  Log:
  MFH: Improved safe_mode/open_basedir check (Ilia)
  
  
http://cvs.php.net/diff.php/php-src/ext/curl/interface.c?r1=1.46.2.12&r2=1.46.2.13&ty=u
Index: php-src/ext/curl/interface.c
diff -u php-src/ext/curl/interface.c:1.46.2.12 
php-src/ext/curl/interface.c:1.46.2.13
--- php-src/ext/curl/interface.c:1.46.2.12      Tue Nov 29 04:14:05 2005
+++ php-src/ext/curl/interface.c        Tue Nov 29 06:03:29 2005
@@ -16,7 +16,7 @@
    +----------------------------------------------------------------------+
 */
 
-/* $Id: interface.c,v 1.46.2.12 2005/11/29 09:14:05 dmitry Exp $ */
+/* $Id: interface.c,v 1.46.2.13 2005/11/29 11:03:29 dmitry Exp $ */
 
 #define ZEND_INCLUDE_FULL_WINDOWS_HEADERS
 
@@ -72,7 +72,7 @@
                        RETURN_FALSE;                                           
                                                                                
                \
                }                                                               
                                                                                
                                \
                                                                                
                                                                                
                                \
-               if (tmp_url->query || php_check_open_basedir(tmp_url->path 
TSRMLS_CC) ||                                                                   
     \
+               if (tmp_url->query || tmp_url->fragment || 
php_check_open_basedir(tmp_url->path TSRMLS_CC) ||                              
                                     \
                        (PG(safe_mode) && !php_checkuid(tmp_url->path, "rb+", 
CHECKUID_CHECK_MODE_PARAM))       \
                ) {                                                             
                                                                                
                        \
                        php_url_free(tmp_url);                                  
                                                                                
        \

-- 
PHP CVS Mailing List (http://www.php.net/)
To unsubscribe, visit: http://www.php.net/unsub.php

Reply via email to