|
Bugs for Safe Mode/open_basedir
|
ID# |
Date |
Last Modified |
Type |
Status |
PHP Version |
OS |
Summary |
Assigned |
33072 (edit) |
2005-05-19 23:21 UTC |
2005-05-21 21:11 UTC |
Bug |
Closed |
5.0.4, 4.3.11 | |
session_save_path bypass safe_mode restriction |
rasmus |
29840 (edit) |
2004-08-25 18:06 UTC |
2008-02-15 08:31 UTC |
Bug |
Closed |
5CVS, 4CVS (2005-01-04) | * |
[PATCH] is_executable() does not honor safe_mode_exec_dir setting |
|
31054 (edit) |
2004-12-10 16:14 UTC |
2005-06-20 17:59 UTC |
Bug |
Closed |
5CVS-2005-03-06 | * |
[PATCH] include_path is not traversed fully when open_basedir nonmatching |
|
31309 (edit) |
2004-12-27 12:30 UTC |
2007-06-19 22:23 UTC |
Bug |
Closed |
5CVS, 4CVS (2005-01-20) | * |
open_basedir restrictions do not work on symlinks |
|
31514 (edit) |
2005-01-12 13:42 UTC |
2005-02-03 00:44 UTC |
Bug |
Closed |
4.3.10, 5.0.3 | * |
. in open_basedir always translates SG(path_translated) rather than CWDG(cwd) |
|
33690 (edit) |
2005-07-14 04:20 UTC |
2005-07-26 00:40 UTC |
Bug |
Closed |
5CVS, 4CVS (2005-07-14) | * |
Setting save_path in httpd.conf under safemode gives SEGV |
rasmus |
44901 (edit) |
2008-05-03 00:41 UTC |
2015-06-04 14:50 UTC |
Bug |
Closed |
5.*, 6CVS (2009-03-16) | * |
open_basedir as prefix complains on attempts to access non-existant files |
cmb |
46888 (edit) |
2008-12-17 14:17 UTC |
2015-08-27 14:26 UTC |
Bug |
Closed |
5.2.9 | * |
copy() : safe_mode / allow_url_fopen does not allow opening urls |
cmb |
48880 (edit) |
2009-07-10 17:49 UTC |
2009-07-31 21:10 UTC |
Bug |
Closed |
5.3SVN-2009-07-27 (snap) | * |
Random Appearing open_basedir problem |
|
8848 (edit) |
2001-01-22 21:53 UTC |
2005-01-31 22:43 UTC |
Bug |
Closed |
4.0.4pl1 | All |
"open_basedir = /dir/incl" validates "/dir/include" and so on |
|
37071 (edit) |
2006-04-13 13:28 UTC |
2006-04-14 17:50 UTC |
Bug |
Closed |
4.4.2 | all |
zlib exploit |
|
21885 (edit) |
2003-01-26 05:01 UTC |
2005-01-31 23:30 UTC |
Bug |
Closed |
4.3.1-dev | any |
move_uploaded_file error with open_basedir |
wez |
24873 (edit) |
2003-07-30 10:50 UTC |
2005-01-31 22:53 UTC |
Bug |
Closed |
4.3.2 | any |
open_basedir doesn't work for single `/' |
|
62037 (edit) |
2012-05-15 14:33 UTC |
2012-05-16 09:46 UTC |
Bug |
Closed |
5.3.13 | CentOS 6.2 x86_64 |
.user.ini ignores open_basedir parameter |
|
50063 (edit) |
2009-11-03 16:15 UTC |
2009-11-12 17:23 UTC |
Bug |
Closed |
5.3, 6 | Debian Etch, Lenny |
safe_mode_include_dir fails |
|
49026 (edit) |
2009-07-23 08:36 UTC |
2009-07-26 15:14 UTC |
Bug |
Closed |
5.2.10 | FreeBSD |
proc_open() can bypass safe_mode_protected_env_vars restrictions |
|
5790 (edit) |
2000-07-26 06:34 UTC |
2005-01-31 23:05 UTC |
Bug |
Closed |
4.0.1pl2 | FreeBSD 3.4 |
touch on a non-existent file does not work |
|
23672 (edit) |
2003-05-17 10:02 UTC |
2011-01-01 20:50 UTC |
Bug |
Closed |
4.3.2RC3 | FreeBSD 4.8-STABLE |
safe_mode in certain cases not displayed in phpinfo() output |
jani |
43677 (edit) |
2007-12-26 01:47 UTC |
2008-03-13 16:01 UTC |
Bug |
Closed |
5.2.5 | FreeBSD 6.2 |
Inconsistent behaviour of include_path set with php_value |
|
47358 (edit) |
2009-02-11 08:12 UTC |
2013-08-19 12:26 UTC |
Bug |
Closed |
5.2.9RC1 | FreeBSD 7.1 |
glob returns error, should be empty array() |
pajoye |
18823 (edit) |
2002-08-09 00:01 UTC |
2005-01-31 22:40 UTC |
Bug |
Closed |
4.2.2 | FreeBSD-4.4-RELEASE |
open_basedir not working for include() or readfile() |
|
76359 (edit) |
2018-05-20 19:02 UTC |
2021-05-21 10:50 UTC |
Bug |
Closed |
7.2.5 | GNU/Linux |
open_basedir bypass through adding ".." |
cmb |
32503 (edit) |
2005-03-30 14:37 UTC |
2007-01-10 22:54 UTC |
Bug |
Closed |
5.1.2 | IBM AIX 5.2.0.0 ML5 |
fopen() in cwd: filename must start with ./ under safe mode |
|
42560 (edit) |
2007-09-05 11:59 UTC |
2009-08-26 05:45 UTC |
Bug |
Closed |
5.2.9 | IBM AIX 5.3 5300-08-01-0819 |
Empty directory argument to tempnam yields open_basedir problems |
|
40931 (edit) |
2007-03-27 18:30 UTC |
2007-04-10 22:31 UTC |
Bug |
Closed |
5.2.1 | Linix |
open_basedir bypass via symlink and move_uploaded_file() |
tony2001 |
10960 (edit) |
2001-05-18 14:12 UTC |
2005-01-31 23:31 UTC |
Bug |
Closed |
4.0.5 | Linux |
coding error in fopen_wrappers.c |
|
11566 (edit) |
2001-06-19 13:35 UTC |
2005-01-31 22:45 UTC |
Bug |
Closed |
4.0.5 | linux |
It appears most functions don't check open_basedir |
|
53597 (edit) |
2010-12-23 12:38 UTC |
2011-02-11 08:48 UTC |
Bug |
Closed |
5.3.4 | Linux |
open_basedir not working as documented |
pajoye |
17790 (edit) |
2002-06-16 16:24 UTC |
2005-01-31 23:35 UTC |
Bug |
Closed |
4.2.1 | Linux |
symlinks circumvent open_basedir restrictions |
|
27559 (edit) |
2004-03-10 21:08 UTC |
2005-01-31 23:26 UTC |
Bug |
Closed |
4CVS-2004-03-11 | Linux |
open_basedir + tempnam, move_uploaded_file and copy problems |
|
|