[Fribidi-discuss] Building fribidi on OSF1 alpha: snprintf

Tzafrir Cohen tzafrir at technion.ac.il
Tue Jan 22 16:22:04 EST 2002


On Wed, 23 Jan 2002, Omer Zak wrote:

>
> On Wed, 23 Jan 2002, Behdad Esfahbod wrote:
>
> > I changed it to sprintf, sprintf is in ANSI C, while snprintf is in
> > ISO C99.
>
> Please don't downgrade to sprintf from snprintf.
> The reason:buffer overflow risk.
>
> Anyone who doesn't have snprintf in his OS - refer him to the punishment
> meted out to people who post stupid newbie questions to the Linux-IL
> mailing list.
>
> If someone MUST compile without snprintf, it means that his OS is very
> very insecure.

Actually, most of the code uses sprintf. Only some of the latest code uses
snprintf.

FWIW I can see snprintf.o in /lib/libdb.a of that computer. I Can find no
trace to snprintf in any system header file.

-- 
Tzafrir Cohen                        /"\
mailto:tzafrir at technion.ac.il        \ /  ASCII Ribbon Campaign
Taub 229, 972-4-829-3942,             X   Against  HTML  Mail
http://www.technion.ac.il/~tzafrir   / \





More information about the FriBidi mailing list