Newsgroups: php.internals Path: news.php.net Xref: news.php.net php.internals:16994 Return-Path: Mailing-List: contact internals-help@lists.php.net; run by ezmlm Delivered-To: mailing list internals@lists.php.net Received: (qmail 2535 invoked by uid 1010); 29 Jun 2005 06:20:05 -0000 Delivered-To: ezmlm-scan-internals@lists.php.net Delivered-To: ezmlm-internals@lists.php.net Received: (qmail 2519 invoked from network); 29 Jun 2005 06:20:05 -0000 Received: from unknown (HELO pb1.pair.com) (127.0.0.1) by localhost with SMTP; 29 Jun 2005 06:20:05 -0000 X-Host-Fingerprint: 195.197.172.116 gw02.mail.saunalahti.fi Linux 2.4/2.6 Received: from ([195.197.172.116:37049] helo=gw02.mail.saunalahti.fi) by pb1.pair.com (ecelerity 1.2 r(5656M)) with SMTP id D4/DF-00424-29D32C24 for ; Wed, 29 Jun 2005 02:20:03 -0400 Received: from nest.netphobia.fi (YZCLXVIII.dsl.saunalahti.fi [85.76.34.69]) by gw02.mail.saunalahti.fi (Postfix) with ESMTP id 24EB8C507E; Wed, 29 Jun 2005 09:19:56 +0300 (EEST) Received: from nest.netphobia.fi (nest.netphobia.fi [127.0.0.1]) by nest.netphobia.fi (8.13.1/8.13.1) with ESMTP id j5T6Jv41017507; Wed, 29 Jun 2005 09:19:57 +0300 Received: from localhost (jani@localhost) by nest.netphobia.fi (8.13.1/8.13.1/Submit) with ESMTP id j5T6Jvr4017504; Wed, 29 Jun 2005 09:19:57 +0300 X-Authentication-Warning: nest.netphobia.fi: jani owned process doing -bs Date: Wed, 29 Jun 2005 09:19:57 +0300 (EEST) Reply-To: Jani Taskinen To: Russell Nelson cc: internals@lists.php.net In-Reply-To: <17090.14242.815242.149673@desk.crynwr.com> Message-ID: References: <42BDDC82.6020208@ohgaki.net> <17088.52397.92440.326561@desk.crynwr.com> <42C0CF76.6090203@lerdorf.com> <42C0F4DA.4000605@php.net> <17089.18702.450236.614561@desk.crynwr.com> <42C225F7.1060201@lerdorf.com> <17090.14242.815242.149673@desk.crynwr.com> MIME-Version: 1.0 Content-Type: TEXT/PLAIN; charset=US-ASCII; format=flowed Subject: Re: [PHP-DEV] allow_url_fopen should be INI_ALL From: sniper@iki.fi (Jani Taskinen) Please troll, do you go away if I close my eyes? --Jani On Wed, 29 Jun 2005, Russell Nelson wrote: > Rasmus Lerdorf writes: > > Russell Nelson wrote: > > > When the top Google result for 'php security flaw' returns > > > mysql_query() instead of include(), I will agree that you are correct. > > > > I am not sure a Google search is a very good barometer here. > > ... today it really doesn't seem like it is even in the top 10 PHP > > security problems. > > Essentially, you're saying that Google doesn't do a good job at > finding pages people would be interested in reading. That's a strong > claim to make. > >