From: Michael R. <mr...@us...> - 2005-10-08 11:26:32
|
Update of /cvsroot/xine/xine-lib/src/input In directory sc8-pr-cvs1.sourceforge.net:/tmp/cvs-serv32327 Modified Files: input_cdda.c Log Message: fix format string vulnerability reported by Ulf Harnhammar of the Debian Security Audit Project Index: input_cdda.c =================================================================== RCS file: /cvsroot/xine/xine-lib/src/input/input_cdda.c,v retrieving revision 1.77 retrieving revision 1.78 diff -u -r1.77 -r1.78 --- input_cdda.c 5 Sep 2005 17:02:57 -0000 1.77 +++ input_cdda.c 8 Oct 2005 11:26:23 -0000 1.78 @@ -1486,7 +1486,7 @@ return; } else { - fprintf(fd, filecontent); + fprintf(fd, "%s", filecontent); fclose(fd); } |