November 20, 2009, 9:54AM

New PHP Release Limits File Uploads

The latest release (PHP 5.3.1) features the addition of the "max_file_uploads" INI directive, which can be used to limit the number of file uploads for each request to 20 by default. By limiting the number of uploads per-request, users can prevent possible denial of service (DoS) attacks. Missing sanity checks around EXIF (exchangeable image file format) processing have also been added. Read the full article. [The H Security]


Commenting on this Article is closed.

 

Copyright © 2012 threatpost.com | Terms of Service | Privacy