Posted by: arif in software, php
A new update of PHP5 has been released.
Security Enhancements and Fixes in PHP 5.2.4:
- Fixed a floating point exception inside wordwrap() (Reported by Mattias Bengtsson)
- Fixed several integer overflows inside the GD extension (Reported by Mattias Bengtsson)
- Fixed size calculation in chunk_split() (Reported by Gerhard Wagner)
- Fixed integer overflow in str[c]spn(). (Reported by Stanislav Malyshev)
- Fixed money_format() not to accept multiple %i or %n tokens. (Reported by Stanislav Malyshev)
- Fixed zend_alter_ini_entry() memory_limit interruption vulnerability. (Reported by Stefan Esser)
- Fixed INFILE LOCAL option handling with MySQL extensions not to be allowed when open_basedir or safe_mode is active. (Reported by Stanislav Malyshev)
- Fixed session.save_path and error_log values to be checked against open_basedir and safe_mode (CVE-2007-3378) (Reported by Maksymilian Arciemowicz)
- Fixed a possible invalid read in glob() win32 implementation (CVE-2007-3806) (Reported by shinnai)
- Fixed a possible buffer overflow in php_openssl_make_REQ (Reported by zatanzlatan at hotbrev dot com)
- Fixed an open_basedir bypass inside glob() function (Reported by dr at peytz dot dk)
- Fixed a possible open_basedir bypass inside session extension when the session file is a symlink (Reported by c dot i dot morris at durham dot ac dot uk)
- Improved fix for MOPB-03-2007.
- Corrected fix for CVE-2007-2872.
No Comments »
You can take a look at the top 20 Symfony plugins here.There is a new Turkish website with a very interesting content. A video sharing platform, but the thing is that all the videos is about a subject and the creator of this video is an expert of that subject. Cool idea…
No Comments »
As you know, using templates by creating dynamic websites is a very good way for optimization. Since a long time there have been many template engines but one of them was always one step further and was developed in a very professional manner, Smarty.
Yes, I’ve used it also and I think it is a well-coded, detailed, fascinating engine.

Now, I’ve heard a new one and in a very short time it gained many users and is developing very quickly. It is called Blitz. I couldn’t have the time to use it, but I have a new project idea and maybe I can try Blitz as a template engine in this project. The chart at left actually took my interest about using it, too.
However, before using it, I recommend all of my readers to read this blog entry written by Rob Peck.
No Comments »
I am a big fan for books but I am a little selective about its content depth and quality. Because of that I will recommend you some books about PHP and webdesign for reference and guide which I think, would help you a lot.
Here is the list:
- The PHP Anthology, Volume II: Applications (Anthology)
by Harry Fuecks
- The PHP Anthology, Volume I: Foundations (Anthology)
by Harry Fuecks
- Professional Ajax
by Nicholas C. Zakas
- Patterns of Enterprise Application Architecture
by Martin Fowler
- Advanced PHP Programming
by George Schlossnagle
- PHP 5 Power Programming (Bruce Perens Open Source)
by Andi Gutmans
- PHP Unleashed
by John Coggeshall
- Eric Meyer on CSS: Mastering the Language of Web Design
by Eric Meyer
- AJAX and PHP: Building Responsive Web Applications
by Cristian Darie, Bogdan Brinzarea
I hope you will take a look at these books and find them useful, too.
No Comments »
Posted by: arif in php, site news
I started to post to this blog in English, but I am currently considerin to either switching it to Turkish or posting some posts in Turkish in another category.
The main reason to do that is giving a good Turkish PHP and web programming web-source.
The vast majority of my readers are Turkish PHP newbies or coders who are still waiting fresh ideas about PHP.
I am thinking about ways to publish my blog in both languages. I hope I’ll find a solution as soon as possible.
4 Comments »
I lost my PHP scripts archive; also all self-coded projects… If anybody ever downloaded the project files/packages please let me know and send them to me.
Thank you in advance.
(Hint: I’ll start to send more about PHP and also my projects in PHP.)
No Comments »
Posted by: arif in php, site news
As I started this blog, I had the idea to share some PHP tricks, articles, tips and even code snippets.
Beside my personal blog entries I will post them either, thus I have now decided to tag/categorize them and not create another page.
No Comments »