瀏覽代碼

fixed strlen-bomb in run_command

master
Aaron Marcher 8 年之前
committed by Aaron Marcher (drkhsh)
父節點
當前提交
df928892e8
共有 1 個檔案被更改,包括 10 行新增1 行删除
  1. +10
    -1
      slstatus.c

+ 10
- 1
slstatus.c 查看文件

@@ -453,6 +453,7 @@ ram_used(const char *null)
char *
run_command(const char* command)
{
int good;
FILE *fp;
char buffer[64];

@@ -469,7 +470,15 @@ run_command(const char* command)
pclose(fp);

/* add nullchar at the end */
buffer[strlen(buffer) - 1] = '\0';
for (int i = 0 ; i != sizeof(buffer) ; i++) {
if (buffer[i] == '\0') {
good = 1;
break;
}
}
if (good) {
buffer[strlen(buffer) - 1] = '\0';
}

/* return the output */
return smprintf("%s", buffer);


Loading…
取消
儲存