Skip to content

HTTPS clone URL

Subversion checkout URL

You can clone with HTTPS or Subversion.

Download ZIP

Loading…

Security Plugin fails to recognise suhosin patch #1310

Closed
halfdan opened this Issue · 3 comments

2 participants

@halfdan
Collaborator

I just patched my PHP 5.3.2 with the suhosin patch and recognised that Piwiks security plugin fails to recognise the patch.

The error was to check for suhosin variables identified in php.ini. My php was running without any changes to the default suhosin settings, therefore no suhosin.* variable was defined.

It is easy to resolv this problem - the suhosin patch defines a constant "SUHOSIN_PATCH" which is easy to get via get_defined_constants().
Keywords: suhosin

@halfdan
Collaborator

Attachment: Fixed version of patch.php in /SecurityInfo/PhpSecInfo/Test/Suhosin/
plugin.security.patch

@robocoder
Collaborator

In [2112], fixes #1310 - fix PhpSecInfo test for Suhosin patch; thanks halfdan

@robocoder
Collaborator

(In [3237]) fixes #1753, refs #1310 - get_defined_constants(false) is broken prior to php 5.2.11

@halfdan halfdan added this to the Piwik 0.6 milestone
This issue was closed.
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Something went wrong with that request. Please try again.