Subject: penguin-command: buffer overflow causes crash from env-var HOME
Package: penguin-command
Version: 1.6.7-2
Severity: normal
Hello,
if I start penguin-command with a long value for the environment variable HOME,
the program crashes.
[EMAIL PROTECTED]:~$ HOME=`perl -e 'print "U" x 250;'`
/usr/games/penguin-command
-w
** Starting SDL init **
** Init video **
** Init timer **
** Loading Icon **
** Finding Joysticks **
** Init joystick **
** Loading Title Screen **
** Loading Sounds **
** Opening Audio Mixer **
Warning: Couldn't set 44100 Hz 16-bit audio
- Reason: No available audio device
**
SOUND TURNED OFF
**
Warning: I could not open the options file for read:
UUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUUU/.penguin-command
The error that occured was:
No such file or directory
Fatal signal: Segmentation Fault (SDL Parachute Deployed)
[EMAIL PROTECTED]:~$
// Ulf Harnhammar
-- System Information:
Debian Release: 3.1
APT prefers unstable
APT policy: (500, 'unstable'), (500, 'testing')
Architecture: i386 (i686)
Kernel: Linux 2.6.8-2-686
Locale: LANG=en_US, LC_CTYPE=en_US (charmap=ISO-8859-1)
Versions of packages penguin-command depends on:
ii libc6 2.3.2.ds1-20 GNU C Library: Shared libraries an
ii libjpeg62 6b-9 The Independent JPEG Group's JPEG
ii libpng12-0 1.2.8rel-1 PNG library - runtime
ii libsdl-mixer1.2 1.2.5-9 mixer library for Simple DirectMed
ii libsdl1.2debian 1.2.7+1.2.8cvs20041007-4 Simple DirectMedia Layer
ii zlib1g 1:1.2.2-3 compression library - runtime
-- no debconf information