Permalink
Browse files

FR-AD-001 - (v2) use strncmp() instead of memcmp() for bounded data

  • Loading branch information...
alandekok committed Jul 5, 2017
1 parent 08a7c2a commit 30c9f53f85a9d07f5213789ea9efbd06d6fc67d8
Showing with 1 addition and 1 deletion.
  1. +1 −1 src/main/conffile.c
@@ -811,7 +811,7 @@ static const char *cf_expand_variables(const char *cf, int *lineno,
p += strlen(p);
ptr = end + 1;

} else if (memcmp(ptr, "$ENV{", 5) == 0) {
} else if (strncmp(ptr, "$ENV{", 5) == 0) {
char *env;

ptr += 5;

0 comments on commit 30c9f53

Please sign in to comment.