PHP 5.2.11°æ±¾ÐÞ¸´¶à¸ö°²È«Â©¶´
ÊÜÓ°Ïìϵͳ£º
PHP PHP 5.2.x
²»ÊÜÓ°Ïìϵͳ£º
PHP PHP 5.2.11
ÃèÊö£º
BUGTRAQ ID: 36449
CVE ID: CVE-2009-3291,CVE-2009-3292,CVE-2009-3293,CVE-2009-3294
PHPÊǹ㷺ʹÓõÄͨÓÃÄ¿µÄ½Å±¾ÓïÑÔ£¬ÌرðÊʺÏÓÚWeb¿ª·¢£¬¿ÉǶÈëµ½HTMLÖС£
PHPµÄ5.2.11֮ǰ°æ±¾µÄ¶à¸öº¯ÊýÖдæÔÚ°²È«Â©¶´£¬¿ÉÄÜÔÊÐíÔ¶³Ì¹¥»÷Õßµ¼Ö¾ܾø·þÎñ»òÍêÈ«ÈëÇÖÓû§ÏµÍ³¡£
1) PHPµÄphp_openssl_apply_verification_policyº¯ÊýûÓÐÕýÈ·µÄÖ´ÐÐÖ¤ÊéÑéÖ¤£¬¿ÉÄÜÔÊÐí¹¥»÷Õßͨ¹ýαÔìµÄÖ¤ÊéÖ´ÐÐÆÛÆ¹¥»÷¡£
2) imagecolortransparentº¯ÊýûÓÐÕýÈ·µÄ¶ÔÑÕÉ«Ë÷ÒýÖ´ÐйýÂ˼ì²é¡£
3) µ±ÔËÐÐÔÚijЩWindows²Ù×÷ϵͳÉÏʱ£¬TSRM/tsrm_win32.cÎļþÖеÄpopen APIº¯ÊýÔÊÐí¹¥»÷Õßͨ¹ýµÚ¶þ¸ö²ÎÊýÖеÄÌØÖÆe»òer×Ö·û´®µ¼Ö¾ܾø·þÎñ¡£
<*À´Ô´£ºRyan Sleevi
Á´½Ó£ºhttp://secunia.com/advisories/36791
http://bugs.php.net/bug.php?id=44683
*>
²âÊÔ·½·¨£º
¾¯ ¸æ
ÒÔϳÌÐò(·½·¨)¿ÉÄÜ´øÓй¥»÷ÐÔ£¬½ö¹©°²È«Ñо¿Óë½Ìѧ֮Óá£Ê¹ÓÃÕß·çÏÕ×Ô¸º£¡
<?php
$t1 = popen("echo hello", "e");
pclose($t1);
$t2 = popen("echo hello", "re");
pclose($t2);
$t3 = popen("echo hello", "er");
pclose($t3);
?>
Ïà¹ØÎĵµ£º
Ò»¡¢ ±äÁ¿ÃüÃû
a) ËùÓÐ×Öĸ¶¼Ê¹ÓÃСд
b) Ê××Öĸ¸ù¾Ý±äÁ¿ÖµÀàÐÍÖ¸¶¨
i. ÕûÊýi
ii. ¸¡µãÊýf
iii. ×Ö·û´®s
iv. ²¼¶ûÖµb
v. Êý×éa
vi. ¶ÔÏóo
vii. ×ÊÔ´r
viii. »ìºÏÀàÐÍm
c) ʹÓÃ’_’×÷Ϊÿһ¸ö´ÊµÄ·Ö½ç
ÀýÈ磺
$i_age_max = 10;
$f_price = 22.5;
$s_name =‘harry’;
$b_flag = true;
......
¡¡¡¡/***************************
¡¡¡¡* author : ´óÁäÇàÄê
¡¡¡¡* email : wenadmin@sina.com
¡¡¡¡* from: http://blog.csdn.net/hahawen
¡¡¡¡* ×ªÔØÇë±£ÁôÕⲿ·ÖÐÅÏ¢£¬Ð»Ð»
¡¡¡¡***************************/
phpÒ³Ãæ·ÃÎÊʱ£¬Í³Ò»½øÐÐȨÏÞÑéÖ¤µÄÉè¼Æ
ÍíÉÏÓÐÈËÎÊÎÒ¹ØÓÚÍøÕ¾Ò³ÃæÏÔʾµÄʱºò£¬È¨ÏÞÅжϵÄÎÊÌâ¡£ÓÚÊǾÍÓ ......
<mce:script type="text/javascript" language="javascript"><!--
function del(com_id,meet_id){
$.ajax({
url:'../company/meet.Ajax.php',
type:'POST',
data:{com_id:com_id,meet_id:meet_id},
dataType:"json",
timeout: 10 ......
<?php
$host = "www.abc.com"; //ÄãÒª·ÃÎʵÄÓòÃû
$target = "/test.asp"; //ÄãÒª·ÃÎʵÄÒ³ÃæµØÖ·
$referer = "http://www.abcdefg.com/abc.html"; //αÔìÀ´Â·Ò³Ãæ
$fp = fsockopen($host, 80, $errno, $errstr, 30);
if (!$fp){
echo "$errstr($errno)<br />\n";
} ......
º¯ÊýµÄÒýÓ÷µ»Ø
ÏÈ¿´´úÂë ¸´ÖÆPHPÄÚÈݵ½¼ôÌù°å
PHP´úÂë:
function &test()
{
static $b=0;//ÉêÃ÷Ò»¸ö¾²Ì¬±äÁ¿
$b=$b+1;
echo $b;
return $b;
}
$a=test();//ÕâÌõÓï¾ä»áÊä³ö¡¡$bµÄÖµ¡¡Îª£±
$a=5;
$a=test();//ÕâÌõÓï¾ä»áÊä³ö¡¡$bµÄÖµ¡¡Îª2
$a=&test();//ÕâÌõÓï¾ä»áÊä³ö¡¡$bµÄÖµ¡¡Îª3
$a=5;
$a=test( ......