From e8fb2dde56e93c1c2641ae99f8b1988352270f55 Mon Sep 17 00:00:00 2001 From: Arnavion Date: Thu, 25 Sep 2014 00:54:38 -0700 Subject: Fixed instances of hexchat_printf that unsafely used a string parameter as a format string. Fixes #1153 --- plugins/sysinfo/xsys.c | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) (limited to 'plugins/sysinfo') diff --git a/plugins/sysinfo/xsys.c b/plugins/sysinfo/xsys.c index 474729c5..4ab6e873 100644 --- a/plugins/sysinfo/xsys.c +++ b/plugins/sysinfo/xsys.c @@ -750,7 +750,7 @@ sysinfo_cb (char *word[], char *word_eol[], void *userdata) if (!g_ascii_strcasecmp ("HELP", word[2+offset])) { - hexchat_printf (ph, sysinfo_help); + hexchat_printf (ph, "%s", sysinfo_help); return HEXCHAT_EAT_ALL; } else if (!g_ascii_strcasecmp ("LIST", word[2+offset])) @@ -870,7 +870,7 @@ sysinfo_cb (char *word[], char *word_eol[], void *userdata) } else { - hexchat_printf (ph, sysinfo_help); + hexchat_printf (ph, "%s", sysinfo_help); return HEXCHAT_EAT_ALL; } } -- cgit 1.4.1