[TYPO3-core] RFC: Bug #12581: Pagetree frame shows HTTP 404 error

Oliver Hader oliver at typo3.org
Tue Nov 24 16:40:11 CET 2009


This is an SVN patch request.

Type: Bugfix

Bugtracker references:
http://bugs.typo3.org/view.php?id=12581

Branches: TYPO3_4-2, Trunk

Problem:
The pagetree frame shows a HTTP 404 error after switching modules in the
backend. This is related to the security fix and
t3lib_div::sanitizeLocalUrl().

Solution:
It seems that the PHP5 implementation of filter_var() concerning URLs is
buggy on some releases. Relative URIs like '/typo3/whatever/script.php'
are considered to be "valid URLs" there. To solve this behaviour a
scheme check has been integrated.

Notes:
Thanks to Björn Pedersen for pointing this out and testing it.

olly
-- 
Oliver Hader
TYPO3 Release Manager 4.3
-------------- next part --------------
A non-text attachment was scrubbed...
Name: 0012581.patch
Type: text/x-patch
Size: 542 bytes
Desc: not available
URL: <http://lists.typo3.org/pipermail/typo3-team-core/attachments/20091124/d9ea3a41/attachment.bin>


More information about the TYPO3-team-core mailing list