PHP5.3.9ã§ã¯ãèå¼±æ§CVE-2011-4885ãä¿®æ£ãããããã®èå¼±æ§ãæªç¨ããã¨ããµã¼ãã«é度ã®è² è·ãæãããµã¼ãã¹ãæä¾ã§ããªãç¶æ ã«ã§ãã¾ãããã®ä¸å ·åã¯PHP5.0ç³»ãPHP5.1ç³»ãPHP5.2ç³»ã«ãå«ã¾ãã¦ãã¾ãããPHP5.3系以å¤ã®ä¿®æ£çã¯æä¾ããã¦ãã¾ããã ã»ãã¥ãªãã£ã¼ãã¼ã«ã®æ¦è¦ GETãPOSTã§æ¸¡ãããå¤æ°ã¯ããã·ã¥æ§é ã«æ ¼ç´ããããå¤æ°åã«ç´°å·¥ãå ãããã¨ã§ããã·ã¥ã®è¡çªãçãããå ¨ã¦ã®å¤æ°ã®ããã·ã¥ãè¡çªããå ´åãNåã®å¤æ°ã®æ ¼ç´ã«ã¯ãO(n2)ã®æéãããããããCPUã«å¤§ããªè² è·ãçºçããã ã»ãã¥ãªãã£ã¼ãã¼ã«ã®ä¿®æ£ è¨å®é ç®ã«max_input_vars(ããã©ã«ãå¤1000)ã追å ããããè¨ç®éã¯O(n2)ãªã®ã§ã1000åãããã®å¤æ°ãè¡çªãã¦ããç¾ä»£ã®ãµã¼ããªãåé¡ãªãã ãã¼ã¸ã§ã³ã¢ããããã«å¯¾å¿ããæ¹æ³ PHP5.3ç³»ã使ã£ã¦ããã°
{{#tags}}- {{label}}
{{/tags}}