Date: Sat, 19 Apr 2008 07:18:22 +0000 (UTC) From: Ruslan Ermilov <ru@FreeBSD.org> To: src-committers@FreeBSD.org, cvs-src@FreeBSD.org, cvs-all@FreeBSD.org Subject: cvs commit: src/lib/libc/stdlib strfmon.c Message-ID: <200804190718.m3J7INvU056013@repoman.freebsd.org>
next in thread | raw e-mail | index | archive | help
ru 2008-04-19 07:18:22 UTC FreeBSD src repository Modified files: lib/libc/stdlib strfmon.c Log: Better strfmon(3) conversion specifiers sanity checking. There were no checks for left and right precisions at all, and a check for field width had integer overflow bug. Reported by: Maksymilian Arciemowicz Security: http://securityreason.com/achievement_securityalert/53 Submitted by: Maxim Dounin <mdounin@mdounin.ru> MFC after: 3 days Revision Changes Path 1.17 +8 -1 src/lib/libc/stdlib/strfmon.c
Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?200804190718.m3J7INvU056013>