diff options
author | ru <ru@FreeBSD.org> | 2008-04-19 07:18:22 +0000 |
---|---|---|
committer | ru <ru@FreeBSD.org> | 2008-04-19 07:18:22 +0000 |
commit | b15775c48abb36de1b048ed03dd48b4c914c50c9 (patch) | |
tree | 0fe96ccf4da176e374ecf8218316fc81d1215132 /lib/libc/stdlib/random.c | |
parent | d2bb3d9ce8eee16fd69ee784a70fcc277c94d2af (diff) | |
download | FreeBSD-src-b15775c48abb36de1b048ed03dd48b4c914c50c9.zip FreeBSD-src-b15775c48abb36de1b048ed03dd48b4c914c50c9.tar.gz |
Better strfmon(3) conversion specifiers sanity checking.
There were no checks for left and right precisions at all, and
a check for field width had integer overflow bug.
Reported by: Maksymilian Arciemowicz
Security: http://securityreason.com/achievement_securityalert/53
Submitted by: Maxim Dounin <mdounin@mdounin.ru>
MFC after: 3 days
Diffstat (limited to 'lib/libc/stdlib/random.c')
0 files changed, 0 insertions, 0 deletions