[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [cobalt-users] PHP Advisory Turning of File Uploads



"David Thurman" <dthurman@xxxxxxxxxxxxxxxxxxxx> wrote:
> We are concerned about turning off file_uploads. We have a few clients
using
> an application called Mambo the uploads images and text, pdf and other
> files. By turning off this will this kill that feature on mambo. I am not
> the php wizard that I wish I should be.

Then you should install PHP 4.1.2 (there is a PKG file for the RaQ 4 at
pkgmaster.com) or grab the source for an older version of PHP, grab the
patch file, apply the patch and install that version.  Obviously, the former
is preferable unless you have critical code that won't work with the latest
version of PHP and which you do not want to rewrite.  The solutions above
will allow for file upload functionality to be used, but address the bugs
listed at http://security.e-matters.de/advisories/012002.html.

--
Steve Werby
President, Befriend Internet Services LLC
http://www.befriend.com/