Hi,

Jani closed the following bug report:

#49785 htmlspecialchars() should check byte sequence more strictly
http://bugs.php.net/bug.php?id=49785

But I think that his reaction isn't good. Does he understand this problem truly? This is a SECURITY PROBLEM. Some Japanese experts in security discussed about this problem. This report is the result of those discussions.

I explain about this problem in English: 
http://co3k.org/sample/php_bugs_49785.html

Do you still want to reject this problem?

We want to talk about this problem with another one who is well informed about encoding. Would you bring such one?

Thanks,

--
Kousuke Ebihara
ebih...@tejimaya.com
http://sns.openpne.jp/?a=page_f_home&target_c_member_id=807
OpenPNE Project http://www.openpne.jp
Tejimaya.inc http://tejimaya.com


--
PHP Internals - PHP Runtime Development Mailing List
To unsubscribe, visit: http://www.php.net/unsub.php

Reply via email to