c398eca6b0fc6583687bd6fe2ee2dbcca2ae9387 |
|
18-Oct-2017 |
Timo Sirainen <timo.sirainen@dovecot.fi> |
lib: printf_format_fix*() - Be over-strict in what format strings are allowed
The checks could have been bypassed by some invalid format strings that were
handled differently by the printf_format_fix*() code and libc. For example
"%**%n" was passed through as ok, but glibc handled the %n in it.
Found by cPanel Security Team. |