Security Plugin fails to recognise suhosin patch #1310

Closed
halfdan opened this Issue Apr 20, 2010 · 3 comments

2 participants

@halfdan
Piwik Open Source Analytics member

I just patched my PHP 5.3.2 with the suhosin patch and recognised that Piwiks security plugin fails to recognise the patch.

The error was to check for suhosin variables identified in php.ini. My php was running without any changes to the default suhosin settings, therefore no suhosin.* variable was defined.

It is easy to resolv this problem - the suhosin patch defines a constant "SUHOSIN_PATCH" which is easy to get via get_defined_constants().
Keywords: suhosin

@halfdan
Piwik Open Source Analytics member

Attachment: Fixed version of patch.php in /SecurityInfo/PhpSecInfo/Test/Suhosin/
plugin.security.patch

@robocoder

In [2112], fixes #1310 - fix PhpSecInfo test for Suhosin patch; thanks halfdan

@robocoder

(In [3237]) fixes #1753, refs #1310 - get_defined_constants(false) is broken prior to php 5.2.11

@halfdan halfdan added this to the Piwik 0.6 milestone Jul 8, 2014
This issue was closed.
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment