From c01cd051c3bedf4502f698d54ea9a1d4c0aba5ff Mon Sep 17 00:00:00 2001 From: cyberbotx Date: Sun, 15 Mar 2009 00:39:59 +0000 Subject: Patch from Phenoix to correct a set of potential security holes in varargs usage. git-svn-id: http://anope.svn.sourceforge.net/svnroot/anope/trunk@2165 5417fbe8-f217-4b02-8779-1006273d7864 --- src/core/cs_sendpass.c | 6 +++--- 1 file changed, 3 insertions(+), 3 deletions(-) (limited to 'src') diff --git a/src/core/cs_sendpass.c b/src/core/cs_sendpass.c index 8643cdeb5..ba9b8dd3f 100644 --- a/src/core/cs_sendpass.c +++ b/src/core/cs_sendpass.c @@ -49,7 +49,7 @@ class CommandCSSendPass : public Command if (!mail) return MOD_CONT; - fprintf(mail->pipe, getstring(founder, CHAN_SENDPASS_HEAD)); + fprintf(mail->pipe, "%s", getstring(founder, CHAN_SENDPASS_HEAD)); fprintf(mail->pipe, "\n\n"); fprintf(mail->pipe, getstring(founder, CHAN_SENDPASS_LINE_1), ci->name); @@ -57,9 +57,9 @@ class CommandCSSendPass : public Command fprintf(mail->pipe, getstring(founder, CHAN_SENDPASS_LINE_2), tmp_pass); fprintf(mail->pipe, "\n\n"); - fprintf(mail->pipe, getstring(founder, CHAN_SENDPASS_LINE_3)); + fprintf(mail->pipe, "%s", getstring(founder, CHAN_SENDPASS_LINE_3)); fprintf(mail->pipe, "\n\n"); - fprintf(mail->pipe, getstring(founder, CHAN_SENDPASS_LINE_4)); + fprintf(mail->pipe, "%s", getstring(founder, CHAN_SENDPASS_LINE_4)); fprintf(mail->pipe, "\n\n"); fprintf(mail->pipe, getstring(founder, CHAN_SENDPASS_LINE_5), NetworkName); -- cgit