NYCPHP Meetup

NYPHP.org

[nycphp-talk] NEW PHundamentals: HTTP Response Splitting

Jeff Siegel jsiegel1 at optonline.net
Sun Sep 18 14:02:30 EDT 2005


Re: Title - Point well taken.

If there are some specifics of the discussion that you feel should be
included, do not hesitate to point out those particular items.

Remember (and this is really addressed to all), the Phundamentals are not
meant to recapitulate an entire discussion but to distill the essential
points. So if there are any essential points that are missing, please let it
be known so changes can be made. 

Jeff



-----Original Message-----
From: talk-bounces at lists.nyphp.org [mailto:talk-bounces at lists.nyphp.org] On
Behalf Of Daniel Convissor
Sent: Sunday, September 18, 2005 12:44 PM
To: NYPHP Talk
Subject: Re: [nycphp-talk] NEW PHundamentals: HTTP Response Splitting

Hi Jeff (and everyone):

On Sun, Sep 18, 2005 at 01:28:23PM -0400, Jeff Siegel wrote:
> A new PHundamentals article - "HTTP Response Splitting" - has been posted.
...
> http://www.nyphp.org/phundamentals/http_response_splitting.php

The posting seems to have ignored much of the discussion regarding this 
topic we had on the list.  In addition, the article is misnamed.  The 
attack at hand isn't response splitting, which has to do with injecting 
items into header() calls.

--Dan

-- 
 T H E   A N A L Y S I S   A N D   S O L U T I O N S   C O M P A N Y
            data intensive web and database programming
                http://www.AnalysisAndSolutions.com/
 4015 7th Ave #4, Brooklyn NY 11232  v: 718-854-0335 f: 718-854-0409
_______________________________________________
New York PHP Talk Mailing List
AMP Technology
Supporting Apache, MySQL and PHP
http://lists.nyphp.org/mailman/listinfo/talk
http://www.nyphp.org




More information about the talk mailing list