]> granicus.if.org Git - php/commitdiff
Escape mail.force_extra_parameters value
authorStanislav Malyshev <stas@php.net>
Tue, 10 Jul 2007 20:23:26 +0000 (20:23 +0000)
committerStanislav Malyshev <stas@php.net>
Tue, 10 Jul 2007 20:23:26 +0000 (20:23 +0000)
ext/standard/mail.c

index 70c1d323bea64fc9272b2e8213a8d51f4abad935..fff0c53905c073b3f684a87b4cf73d58a3e0c4f8 100644 (file)
@@ -139,7 +139,7 @@ PHP_FUNCTION(mail)
        }
 
        if (force_extra_parameters) {
-               extra_cmd = estrdup(force_extra_parameters);
+               extra_cmd = php_escape_shell_cmd(force_extra_parameters);
        } else if (extra_cmd) {
                extra_cmd = php_escape_shell_cmd(extra_cmd);
        }