Posted by Erwin Moller on 06/22/07 12:15
Schraalhans Keukenmeester wrote:
> It's been mentioned here a couple of times in different threads regarding
> image uploading. It's not new, but I found a clear explanation of what it
> is and how to deal with it. Hope it helps some of you.
>
>
http://www.phpclasses.org/blog/post/67-PHP-security-exploit-with-GIF-images.html
>
> Best!
> Sh.
Thanks.
Good warning.
I always load and resample uploaded images in GD before saving them, so I
guess my apps are safe from gif/php exploit. (More luck than wisdom.)
Thanks.
Regards,
Erwin Moller
[Back to original message]
|