<?php
/**
* crypt-test-salt-nul-bytes.php
*/
$saltLen = 16;
$prefix = '$5$';
$length = 63;
$plain = 'hello';
$salt = str_repeat("\0", $saltLen);
$salt[15] = '.';
$salt[0] = '.';
$salt = "";
$result = crypt($plain, $prefix . $salt);
var_dump($result);
echo strlen($result) !== $length ? 'FAIL' : 'OK';
- Output for 4.3.0 - 4.3.11, 4.4.0 - 4.4.9, 5.0.0 - 5.0.5, 5.1.0 - 5.1.6, 5.2.0 - 5.2.17, 5.3.2 - 5.3.29, 5.4.0 - 5.4.45, 5.5.0 - 5.5.35, 5.6.0 - 5.6.28, 7.0.0 - 7.0.20, 7.1.0 - 7.1.33, 7.2.0 - 7.2.33, 7.3.0 - 7.3.33, 7.4.0 - 7.4.33, 8.0.0 - 8.0.30, 8.1.0 - 8.1.28, 8.2.0 - 8.2.18, 8.3.0 - 8.3.6
- string(47) "$5$$TCRu/ts4Npu8OJyeWy2WnUHCe/6bKVMSi0sROUrPh48"
FAIL
- Output for 5.3.0 - 5.3.1
- string(13) "$5Ig8j7SOu7.6"
FAIL
preferences:
315.66 ms | 401 KiB | 389 Q