summaryrefslogtreecommitdiff
path: root/tests/executor
diff options
context:
space:
mode:
Diffstat (limited to 'tests/executor')
-rw-r--r--tests/executor/function_blacklist_printf_function_exists.phpt22
-rw-r--r--tests/executor/function_whitelist_function_exists.phpt22
-rw-r--r--tests/executor/function_whitelist_without_function_exists.phpt20
3 files changed, 64 insertions, 0 deletions
diff --git a/tests/executor/function_blacklist_printf_function_exists.phpt b/tests/executor/function_blacklist_printf_function_exists.phpt
new file mode 100644
index 0000000..2fe9d33
--- /dev/null
+++ b/tests/executor/function_blacklist_printf_function_exists.phpt
@@ -0,0 +1,22 @@
1--TEST--
2Testing: suhosin.executor.func.blacklist=printf with function_exists()
3--SKIPIF--
4<?php include "../skipifnotcli.inc"; ?>
5--INI--
6suhosin.log.sapi=64
7suhosin.executor.func.blacklist=printf,max
8--FILE--
9<?php
10 var_dump(function_exists("abs"));
11 var_dump(function_exists("max"));
12 var_dump(function_exists("ord"));
13 var_dump(function_exists("printf"));
14 var_dump(function_exists("chr"));
15?>
16--EXPECTF--
17bool(true)
18bool(false)
19bool(true)
20bool(false)
21bool(true)
22
diff --git a/tests/executor/function_whitelist_function_exists.phpt b/tests/executor/function_whitelist_function_exists.phpt
new file mode 100644
index 0000000..bc515ab
--- /dev/null
+++ b/tests/executor/function_whitelist_function_exists.phpt
@@ -0,0 +1,22 @@
1--TEST--
2Testing: suhosin.executor.func.whitelist with function_exists()
3--SKIPIF--
4<?php include "../skipifnotcli.inc"; ?>
5--INI--
6suhosin.log.sapi=64
7suhosin.executor.func.whitelist=printf,max,function_exists,var_dump
8--FILE--
9<?php
10 var_dump(function_exists("abs"));
11 var_dump(function_exists("max"));
12 var_dump(function_exists("ord"));
13 var_dump(function_exists("printf"));
14 var_dump(function_exists("chr"));
15?>
16--EXPECTF--
17bool(false)
18bool(true)
19bool(false)
20bool(true)
21bool(false)
22
diff --git a/tests/executor/function_whitelist_without_function_exists.phpt b/tests/executor/function_whitelist_without_function_exists.phpt
new file mode 100644
index 0000000..b0c8528
--- /dev/null
+++ b/tests/executor/function_whitelist_without_function_exists.phpt
@@ -0,0 +1,20 @@
1--TEST--
2Testing: suhosin.executor.func.whitelist without function_exists()
3--SKIPIF--
4<?php include "../skipifnotcli.inc"; ?>
5--INI--
6suhosin.log.sapi=64
7suhosin.executor.func.whitelist=printf,max,var_dump
8--FILE--
9<?php
10 var_dump(function_exists("abs"));
11 var_dump(function_exists("max"));
12 var_dump(function_exists("ord"));
13 var_dump(function_exists("printf"));
14 var_dump(function_exists("chr"));
15?>
16--EXPECTF--
17ALERT - function outside of whitelist called: function_exists() (attacker 'REMOTE_ADDR not set', file '%s', line 2)
18
19Warning: function_exists() has been disabled for security reasons in %s on line 2
20