Re: error: format not a string literal and no format arguments
- From: Colin Walters <walters redhat com>
- To: Alexander Jones <alex weej com>
- Cc: desktop-devel-list <desktop-devel-list gnome org>
- Subject: Re: error: format not a string literal and no format arguments
- Date: Sun, 06 Jul 2008 09:49:11 -0400
On Sun, 2008-07-06 at 02:40 +0100, Alexander Jones wrote:
> Yeah, I could just use -Wleave-me-alone-ffs or something, but it's
> probably worth considering this properly.
No, it should be a hard-stop error because in many instances it's a
security flaw if the input string is in any way controlled by a
potential attacker:
http://en.wikipedia.org/wiki/Format_string_vulnerabilities
[
Date Prev][
Date Next] [
Thread Prev][
Thread Next]
[
Thread Index]
[
Date Index]
[
Author Index]