From 0bd3d1505e3a9f8b48768411b837dac80b21827e Mon Sep 17 00:00:00 2001 From: Roman Smirnov Date: Fri, 28 Jun 2024 16:01:41 +0300 Subject: [PATCH] l2test: replace sprintf() with snprintf() in recv_mode() Use snprintf() instead of sprintf() to avoid buffer overflow. Found with the SVACE static analysis tool --- tools/l2test.c | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/tools/l2test.c b/tools/l2test.c index 7b6c36e16..4c2296899 100644 --- a/tools/l2test.c +++ b/tools/l2test.c @@ -913,7 +913,7 @@ static void recv_mode(int sk) timestamp = 0; memset(ts, 0, sizeof(ts)); } else { - sprintf(ts, "[%lld.%lld] ", + snprintf(ts, sizeof(ts), "[%lld.%lld] ", (long long)tv.tv_sec, (long long)tv.tv_usec); } -- 2.47.3