diff options
author | Rasmus Lerdorf <rasmus@php.net> | 2009-12-26 23:38:25 +0000 |
---|---|---|
committer | Rasmus Lerdorf <rasmus@php.net> | 2009-12-26 23:38:25 +0000 |
commit | c18de792650258a0d3f85648400cb5bc3c693dd4 (patch) | |
tree | 99b41da9f5cdbaac38edefdcdb32e743296d8a09 /ext/mysql/php_mysql.c | |
parent | 24af48e40217440f2ed5e7d54b745c4a3a5f05eb (diff) | |
download | php-git-c18de792650258a0d3f85648400cb5bc3c693dd4.tar.gz |
Along with the valid char set, also add a length check to the
session id here to avoid a lower-level error on the open()
later on in case we exceed MAX_PATH. The lower level open()
error includes the session dir path in it, so this is a very
low-priority security fix. People should not be running
production systems with display_errors turned on.
Diffstat (limited to 'ext/mysql/php_mysql.c')
0 files changed, 0 insertions, 0 deletions