Uncontrolled format string
id:
uncontrolled-format-string-309-14997850
title:
Uncontrolled format string
text:
Uncontrolled format string is a type of code injection vulnerability discovered around 1989 that can be used in security exploits. Originally thought harmless, format string exploits can be used to crash a program or to execute harmful code. The problem stems from the use of unchecked user input as the format string parameter in certain C functions that perform formatting, such as printf. A malicious user may use the %s and %x format tokens, among others, to print data from the call stack or pos
brand slug:
wiki
category slug:
encyclopedia
description:
Type of software vulnerability
original url:
https://en.wikipedia.org/wiki/Uncontrolled_format_string
date created:
date modified:
2024-04-03T14:40:24Z
main entity:
{"identifier":"Q1133472","url":"https://www.wikidata.org/entity/Q1133472"}
image:
fields total:
13
integrity:
14