Debian Bug 222301
Andreas Rottmann <[email protected]> Sun, 22 Feb 2004 18:26:06 +0100
| Newsgroups | gmane.comp.audio.zinf.devel |
|---|---|
| Message-ID | <[email protected]> |
tags 222301 +forwarded [email protected] thanks Hi! Looking at the current CVS code, the code is referred to in the patch[0] still is severly fucked up: io/obs/obsinput.cpp: char *path2 = new char[PATH_MAX]; ReportStatus(_("Setting up RTP stream...")); iRet = sscanf(path2, "rtp://%[^:]:%d", szAddr, &iPort); * Possible buffer overflow in szAddr * Use of unitialized memory (path2) This should really be fixed. For now, I'll apply the patch from the bug report. [0] http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=222301&repeatmerged=no Andy ------------------------------------------------------- SF.Net is sponsored by: Speed Start Your Linux Apps Now. Build and deploy apps & Web services for Linux with a free DVD software kit from IBM. Click Now! http://ads.osdn.com/?ad_id=1356&alloc_id=3438&op=click