openbsd-ports/net/ez-ipupdate/patches/patch-ez-ipupdate_c
ajacoutot 3c366ebb68 - SECURITY fix for a known format string vulnerability
from Michael Tannenbaum via MAINTAINER
2007-12-17 22:38:19 +00:00

13 lines
385 B
Plaintext

$OpenBSD: patch-ez-ipupdate_c,v 1.1 2007/12/17 22:38:19 ajacoutot Exp $
--- ez-ipupdate.c.orig Mon Dec 17 23:32:54 2007
+++ ez-ipupdate.c Mon Dec 17 23:34:05 2007
@@ -798,7 +798,7 @@ void show_message(char *fmt, ...)
sprintf(buf, "message incomplete because your OS sucks: %s\n", fmt);
#endif
- syslog(LOG_NOTICE, buf);
+ syslog(LOG_NOTICE, "%s", buf);
}
else
{