db_sprintf() buffer overflow
Issue #272
new
The db_sprintf() call does not check for overrun of the destination buffer. Perhaps we should change it to return std::string, like msprintf(). K.O.
Comments (4)
-
-
reporter added std::string db_sprintf() & co. not used by anything yet. K.O.
-
reporter -
assigned issue to
-
assigned issue to
-
reporter mhttpd.cxx converted to new db_sprintf(). K.O.
- Log in to comment
Agree.