Format string bug in logger

Tim Robbins fyre at box3n.gumbynet.org
Wed Dec 6 23:18:53 UTC 2000


Package: busybox
Version: Current as of 7 December 2000
Severity: normal

Format string bug in call to syslog():

	openlog(name, option, (pri | LOG_FACMASK));
	syslog(pri, message);
	closelog();

should be:

	openlog(name, option, (pri | LOG_FACMASK));
	syslog(pri, "%s", message);
	closelog();


While I'm at it, should logger log the first command line argument or all
of them? I'm pretty sure BSD logger does the latter.

Tim

--
Tim J. Robbins <fyre at eryf.net>


---------------------------------------
Received: (at 1083-done) by bugs.lineo.com; 7 Dec 2000 16:22:39 +0000


More information about the busybox mailing list