User tests: Successful: Unsuccessful:
This pull request implements the safe string helper methods from \ParagonIE\Halite\Util
(essentially as a fork since that library requires PHP 5.6) and utilizes the safeStrlen()
method in our JCrypt::timingSafeCompare()
method to address the issue raised in #8330.
Status | New | ⇒ | Pending |
Labels |
Added:
?
|
There are other instances that need to be updated but that can come later.
Category | ⇒ | Libraries |
Status | Pending | ⇒ | Closed |
Closed_Date | 0000-00-00 00:00:00 | ⇒ | 2015-11-09 22:09:40 |
Closed_By | ⇒ | wilsonge |
Merged on review
Milestone |
Added: |
Code reviewed