Blame SOURCES/0006-thin_metadata_size-Fix-potential-string-overflow.patch

85793c
From 35e96e07c956a501cb8a12f5b873db173bb09179 Mon Sep 17 00:00:00 2001
85793c
From: Ming-Hung Tsai <mtsai@redhat.com>
85793c
Date: Wed, 2 Jun 2021 11:39:01 +0800
85793c
Subject: [PATCH 06/10] [thin_metadata_size] Fix potential string overflow
85793c
85793c
---
85793c
 thin-provisioning/thin_metadata_size.cc | 10 +++++++---
85793c
 1 file changed, 7 insertions(+), 3 deletions(-)
85793c
85793c
diff --git a/thin-provisioning/thin_metadata_size.cc b/thin-provisioning/thin_metadata_size.cc
85793c
index b6a5718..f14696c 100644
85793c
--- a/thin-provisioning/thin_metadata_size.cc
85793c
+++ b/thin-provisioning/thin_metadata_size.cc
85793c
@@ -192,9 +192,13 @@ static void printf_aligned(struct global *g, char const *a, char const *b, char
85793c
 {
85793c
 	char buf[80];
85793c
 
85793c
-	strcpy(buf, b);
85793c
-	if (units)
85793c
-		strcat(buf, mandatory ? "{" :"["), strcat(buf, g->unit.chars), strcat(buf, mandatory ? "}" : "]");
85793c
+	if (units) {
85793c
+		char left_bracket = mandatory ? '{' : '[';
85793c
+		char right_bracket = mandatory ? '}' : ']';
85793c
+		snprintf(buf, 80, "%s%c%s%c", b, left_bracket, g->unit.chars, right_bracket);
85793c
+	} else {
85793c
+		snprintf(buf, 80, "%s", b);
85793c
+	}
85793c
 
85793c
 	printf("\t%-4s%-44s%s\n", a, buf, c);
85793c
 }
85793c
-- 
85793c
1.8.3.1
85793c