From 559e40a8b9a413119cebe2f5dfa2ece04daff6ff Mon Sep 17 00:00:00 2001 From: Roman Smirnov Date: Fri, 28 Jun 2024 16:15:30 +0300 Subject: [PATCH] rctest: replace sprintf() with snprintf() in recv_mode() Use snprintf() instead of sprintf() to avoid buffer overflow. Found with the SVACE static analysis tool. --- tools/rctest.c | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/tools/rctest.c b/tools/rctest.c index ff91eb2f1..e39d313eb 100644 --- a/tools/rctest.c +++ b/tools/rctest.c @@ -500,7 +500,7 @@ static void recv_mode(int sk) timestamp = 0; memset(ts, 0, sizeof(ts)); } else { - sprintf(ts, "[%lld.%lld] ", + snprintf(ts, sizeof(ts), "[%lld.%lld] ", (long long)tv.tv_sec, (long long)tv.tv_usec); } -- 2.47.3