In message <[EMAIL PROTECTED]> "John Doh!" writes:
: Issue is must be getting format string from "untrusted" place, but want to 
: limit substitution of %... to the substitution of say in example the 
: argv[0], but to not do others so that say given "usage: %s filename %p" %p 
: not interpret but to be print instead as literally so we get output of 
: (saying to be argv[0] as test just for example) usage: test filename %p
: 
: any hints you have I am very greatful for.

Fix gettext to only allow N arguments in the same order that the
original message had.

Warner


To Unsubscribe: send mail to [EMAIL PROTECTED]
with "unsubscribe freebsd-hackers" in the body of the message

Reply via email to