Re: Format poissoning in argp-parse.c.

2012-01-06 Thread Bruno Haible
Hi, Mats Erik Andersson wrote: > there is a potential attack vector, and easily avoidable, > in "lib/argp-parser.c" of GNUlib. This came to my attention > by the modifications Guillem Jover [1] does to GNU Inetutils' > source archives. The relevant change is reproduced below. > (Yes, I will act my

Format poissoning in argp-parse.c.

2012-01-06 Thread Mats Erik Andersson
Dear all, there is a potential attack vector, and easily avoidable, in "lib/argp-parser.c" of GNUlib. This came to my attention by the modifications Guillem Jover [1] does to GNU Inetutils' source archives. The relevant change is reproduced below. (Yes, I will act myself on all those changes that