From: cataphract Operating system: Any PHP version: 5.4SVN-2012-02-03 (SVN) Package: Reproducible crash Bug Type: Bug Bug description:Buffer overflow on htmlspecialchars/entities with $double=false Description: ------------ Long entities can cause a buffer overflow because the loop only guarantees 40 bytes available in beginning. Test script: --------------- <?php echo htmlspecialchars('"""""""""""""""""""""""""""""""""""""""""""""', ENT_QUOTES, 'UTF-8', false), "\n";
http://skamason.com/7b9R
http://skamason.com/7b9R
quinta-feira, 5 de abril de 2012
PHP 5.4 Buffer Overflow
Assinar:
Postar comentários (Atom)
Nenhum comentário:
Postar um comentário