r114324 MediaWiki - Code Review archive

Repository:MediaWiki
Revision:r114323‎ | r114324 | r114325 >
Date:22:58, 20 March 2012
Author:dantman
Status:ok
Tags:
Comment:
Security paranoia, reject requests to router.php that aren't from the cli-server sapi.
Modified paths:
  • /trunk/phase3/maintenance/dev/includes/router.php (modified) (history)

Diff [purge]

Index: trunk/phase3/maintenance/dev/includes/router.php
@@ -3,6 +3,10 @@
44 # Router for the php cli-server built-in webserver
55 # http://ca2.php.net/manual/en/features.commandline.webserver.php
66
 7+if ( php_sapi_name() != 'cli-server' ) {
 8+ die( "This script can only be run by php's cli-server sapi." );
 9+}
 10+
711 ini_set('display_errors', 1);
812 error_reporting(E_ALL);
913

Follow-up revisions

RevisionCommit summaryAuthorDate
r114325Backport r114324 to 1.19 so we don't end up releasing a version of MediaWiki ...dantman23:01, 20 March 2012

Status & tagging log