From e8fb2dde56e93c1c2641ae99f8b1988352270f55 Mon Sep 17 00:00:00 2001 From: Arnavion Date: Thu, 25 Sep 2014 00:54:38 -0700 Subject: Fixed instances of hexchat_printf that unsafely used a string parameter as a format string. Fixes #1153 --- plugins/upd/upd.c | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) (limited to 'plugins/upd/upd.c') diff --git a/plugins/upd/upd.c b/plugins/upd/upd.c index 7ebf95bc..6fcf3be9 100644 --- a/plugins/upd/upd.c +++ b/plugins/upd/upd.c @@ -128,7 +128,7 @@ print_version (char *word[], char *word_eol[], void *userdata) if (!g_ascii_strcasecmp ("HELP", word[2])) { - hexchat_printf (ph, upd_help); + hexchat_printf (ph, "%s", upd_help); return HEXCHAT_EAT_HEXCHAT; } else if (!g_ascii_strcasecmp ("SET", word[2])) @@ -200,7 +200,7 @@ print_version (char *word[], char *word_eol[], void *userdata) } else { - hexchat_printf (ph, upd_help); + hexchat_printf (ph, "%s", upd_help); return HEXCHAT_EAT_HEXCHAT; } } -- cgit 1.4.1