Explorar o código

Actual buffer overflow bug found because of these fixes

Glenn Smith %!s(int64=7) %!d(string=hai) anos
pai
achega
e03a86f75a
Modificáronse 1 ficheiros con 2 adicións e 2 borrados
  1. 2 2
      Engine/source/console/fileSystemFunctions.cpp

+ 2 - 2
Engine/source/console/fileSystemFunctions.cpp

@@ -643,8 +643,8 @@ DefineEngineFunction(fileName, String, ( const char* fileName ),,
       name = szPathCopy;
    else
       name++;
-   char *ret = Con::getReturnBuffer(dStrlen(name));
-   dStrcpy(ret, name, dStrlen(name));
+   char *ret = Con::getReturnBuffer(dStrlen(name) + 1);
+   dStrcpy(ret, name, dStrlen(name) + 1);
    return ret;
 }