4c035183ea
CVE-2008-3520 CVE-2008-3522 CVE-2014-8137 CVE-2014-8138 CVE-2014-8157 CVE-2014-8158 CVE-2014-9029 CVE-2015-5203 CVE-2016-1577 CVE-2016-2089 CVE-2016-2116
14 lines
580 B
Diff
14 lines
580 B
Diff
https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2008-3522
|
|
|
|
diff -pruN jasper-1.900.1.orig/src/libjasper/base/jas_stream.c jasper-1.900.1/src/libjasper/base/jas_stream.c
|
|
--- jasper-1.900.1.orig/src/libjasper/base/jas_stream.c 2009-10-22 10:27:45.000000000 +0200
|
|
+++ jasper-1.900.1/src/libjasper/base/jas_stream.c 2009-10-22 10:35:53.000000000 +0200
|
|
@@ -553,7 +553,7 @@ int jas_stream_printf(jas_stream_t *stre
|
|
int ret;
|
|
|
|
va_start(ap, fmt);
|
|
- ret = vsprintf(buf, fmt, ap);
|
|
+ ret = vsnprintf(buf, sizeof buf, fmt, ap);
|
|
jas_stream_puts(stream, buf);
|
|
va_end(ap);
|
|
return ret;
|