1 diff -urN pwdutils-3.2.19/lib/logging.c pwdutils-3.2.19.new/lib/logging.c
2 --- pwdutils-3.2.19/lib/logging.c 2006-11-29 14:18:21.000000000 +0100
3 +++ pwdutils-3.2.19.new/lib/logging.c 2013-02-04 20:18:24.415634693 +0100
8 - syslog (LOG_ERR, err_msg);
9 + syslog (LOG_ERR, "%s", err_msg);
10 fprintf (stderr, _("Cannot open logging plugin:\n%s\n"),
14 new->sec_log_fnc = dlsym (handle, buf);
15 if ((err_msg = dlerror ()) != NULL)
17 - syslog (LOG_ERR, err_msg);
18 + syslog (LOG_ERR, "%s", err_msg);
19 fprintf (stderr, _("Cannot find symbol `%s':\n%s\n"),
23 new->open_sec_log_fnc = dlsym (handle, buf);
24 if ((err_msg = dlerror ()) != NULL)
26 - syslog (LOG_ERR, err_msg);
27 + syslog (LOG_ERR, "%s", err_msg);
28 fprintf (stderr, _("Cannot find symbol `%s':\n%s\n"),
31 diff -urN pwdutils-3.2.19/src/rpasswd-client.c pwdutils-3.2.19.new/src/rpasswd-client.c
32 --- pwdutils-3.2.19/src/rpasswd-client.c 2011-02-01 16:22:44.000000000 +0100
33 +++ pwdutils-3.2.19.new/src/rpasswd-client.c 2013-02-04 20:44:12.560581004 +0100
35 *ctx = SSL_CTX_new (meth);
38 - PRINTF (ERR_HANDLE, ERR_error_string (ERR_get_error (), NULL));
39 + PRINTF (ERR_HANDLE, "%s", ERR_error_string (ERR_get_error (), NULL));
44 *ssl = SSL_new (*ctx);
47 - PRINTF (ERR_HANDLE, ERR_error_string (ERR_get_error (), NULL));
48 + PRINTF (ERR_HANDLE, "%s", ERR_error_string (ERR_get_error (), NULL));
51 SSL_set_fd (*ssl, sock);
52 diff -urN pwdutils-3.2.19/src/rpasswdd.c pwdutils-3.2.19.new/src/rpasswdd.c
53 --- pwdutils-3.2.19/src/rpasswdd.c 2010-07-08 10:32:11.000000000 +0200
54 +++ pwdutils-3.2.19.new/src/rpasswdd.c 2013-02-04 21:01:18.326860645 +0100
56 if (asprintf (&cp, _("setresuid failed on server: %s"),
57 strerror (errno)) > 0)
61 send_string (ssl, ERROR_MSG, cp);
66 if (asprintf (&cp, "fork: %s", strerror (errno)) > 0)
70 send_string (ssl, ERROR_MSG, cp);
74 ctx = SSL_CTX_new (meth);
77 - dbg_log (ERR_error_string (ERR_get_error (), NULL));
78 + dbg_log ("%s", ERR_error_string (ERR_get_error (), NULL));
84 if (!SSL_CTX_check_private_key (ctx))
86 - dbg_log (ERR_error_string (ERR_get_error (), NULL));
87 + dbg_log ("%s", ERR_error_string (ERR_get_error (), NULL));