Hi Sven,

indeed I imported the change to use an array size of 3 - I believe this win~DOS 
compiler still does not have snprintf until at least the 2013 version. So we 
better avoid it for now.

        René

On Feb 25, 2015, at 12:40, Sven Eckelmann <[email protected]> wrote:

> Hi,
> 
> just saw a report [1] about a crash in exactimage. This can be reproduced 
> with the
> current version with following steps:
> 
> # modify Makefile and add to CFLAGS/CXXFLAGS: -fsanitize=address 
> -fsanitize=undefined
> ./configure
> make
> ./objdir/frontends/bardecode example_barcode-bw.png
> 
> The patch to fix this is attached.
> 
> 
> Kind regards,
>       Sven
> 
> [1] https://bugs.launchpad.net/ubuntu/+source/exactimage/+bug/1425472
> <example_barcode-bw.png><0001-Fix-buffer-overflow-when-decoding-code128-code_set_c.patch>

-- 
 ExactCODE GmbH, Lietzenburger Str. 42, DE-10789 Berlin
 http://exactcode.com | http://exactscan.com | http://ocrkit.com | 
http://t2-project.org | http://rene.rebe.de

----------------------------------------------------------- 
If you wish to unsubscribe from this mailing, send mail to
[email protected] with a subject of: unsubscribe exact-image

Reply via email to