SMF Development > Applied or Declined Requests

Block 1x1 images

<< < (3/5) > >>

青山 素子:

--- Quote from: IchBin™ on April 18, 2012, 07:50:12 PM ---Is it really worth it to parse a post to get this information about an image in a post? It means you'd have to send off a request just to get the image first to figure out the size/dimensions etc.

--- End quote ---

Not to mention that some web hosts don't allow the methods necessary for the script to download external resources. Namely any of url fopen (usually blocked), curl (not common on hosts), and direct sockets (pain to code and not usually supported).

Yoshi:
Why don't you add is as extra protection then, so that it can be enabled and a check can be applied whether the use of url fopen is allowed?

Really it doesn't matter to me but there are users actually getting infected because of this problem...

K@:
These images... It seems to just be gifs. Is that correct?

Does that, in itself, make it easier to block? Or, are all formats affected, by this?

IchBin™:
What if they create a 2x2 or 5x5 image? Checking the size doesn't really solve the problem. The best way to solve this type of problem is to restrict people from posting images in the first place.

Maybe you can get someone to write a mod to pull the file down, run it through an AV scan and then allow or disallow. :)

Yoshi:

--- Quote from: K@ on April 19, 2012, 03:06:30 PM ---These images... It seems to just be gifs. Is that correct?

Does that, in itself, make it easier to block? Or, are all formats affected, by this?

--- End quote ---
Sorry, I dunno.

@IchBin: Yeah, but obviously bigger images are more obvious.
Pulling it through a virus scan seems a good idea though :)

Navigation

[0] Message Index

[#] Next page

[*] Previous page

Go to full version