Gif Security Issue

See all posts See thread Reply

Re: Gif Security Issue new!
by colin, 15 years, 11 months ago
The best protection against this is with an .htaccess file, as the article explains.

As for the class, depending on your server configuration, it does a lot of checks on the uploaded file to determine its MIME type. It is using Fileinfo PECL extension, UNIX file() command, MIME magic, and getimagesize(), in that order, which should catch malicious files.

Then, you can instruct the class to accept only some MIME types, or refuse some.Reply