[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
Fedora 14 - Format string attack in allegro-tools package
- To: bugtraq@xxxxxxxxxxxxxxxxx
- Subject: Fedora 14 - Format string attack in allegro-tools package
- From: rafaldworaczek@xxxxxxxxx
- Date: 28 Dec 2010 20:38:28 -0000
Format string attack in pack.c file (package allegro-tools) Fedora 14
Problematic code:
static void err(char *s1, char *s2)
{
......
if (s2)
printf(s2);
......
}
.......
f1 = argv[1];
.......
if (!in) {
err("can't open ", f1);
return 1;
}