From: skodak Date: Tue, 1 Jan 2008 17:23:05 +0000 (+0000) Subject: MDL-12793 PARAM_HOST incorrect cleaning; merged from MOODLE_19_STABLE X-Git-Url: http://git.mjollnir.org/gw?a=commitdiff_plain;h=3e475991f9747cbd29b5c3523afeae3390347186;p=moodle.git MDL-12793 PARAM_HOST incorrect cleaning; merged from MOODLE_19_STABLE --- diff --git a/lib/moodlelib.php b/lib/moodlelib.php index 33f89bf6e7..c0ed3c321b 100644 --- a/lib/moodlelib.php +++ b/lib/moodlelib.php @@ -452,7 +452,7 @@ function clean_param($param, $type) { return ereg_replace('/(\./)+', '/', $param); case PARAM_HOST: // allow FQDN or IPv4 dotted quad - preg_replace('/[^\.\d\w-]/','', $param ); // only allowed chars + $param = preg_replace('/[^\.\d\w-]/','', $param ); // only allowed chars // match ipv4 dotted quad if (preg_match('/(\d{1,3})\.(\d{1,3})\.(\d{1,3})\.(\d{1,3})/',$param, $match)){ // confirm values are ok