packages: libcgroup/cgconfig.init - avoid printf-format exploits :)

glen glen at pld-linux.org
Tue Feb 8 15:54:43 CET 2011


Author: glen                         Date: Tue Feb  8 14:54:43 2011 GMT
Module: packages                      Tag: HEAD
---- Log message:
- avoid printf-format exploits :)

---- Files affected:
packages/libcgroup:
   cgconfig.init (1.4 -> 1.5) 

---- Diffs:

================================================================
Index: packages/libcgroup/cgconfig.init
diff -u packages/libcgroup/cgconfig.init:1.4 packages/libcgroup/cgconfig.init:1.5
--- packages/libcgroup/cgconfig.init:1.4	Tue Feb  8 13:41:54 2011
+++ packages/libcgroup/cgconfig.init	Tue Feb  8 15:54:38 2011
@@ -30,7 +30,7 @@
 	# Find all mounted subsystems and create comma-separated list
 	# of controllers.
 	#
-	controllers=`lssubsys 2>/dev/null | awk '{ if (v) v=v","$0 ; else v=$0 } END { printf v }'`
+	controllers=$(lssubsys 2>/dev/null | awk '{ if (v) v=v","$0 ; else v=$0 } END { printf "%s", v }')
 
 	#
 	# Create the default group, ignore errors when the default group
================================================================

---- CVS-web:
    http://cvs.pld-linux.org/cgi-bin/cvsweb.cgi/packages/libcgroup/cgconfig.init?r1=1.4&r2=1.5&f=u



More information about the pld-cvs-commit mailing list