aboutsummaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
-rw-r--r--mail/ChangeLog3
-rw-r--r--mail/mail-format.c2
2 files changed, 4 insertions, 1 deletions
diff --git a/mail/ChangeLog b/mail/ChangeLog
index d8b8730ba4..9a9afe12f7 100644
--- a/mail/ChangeLog
+++ b/mail/ChangeLog
@@ -1,5 +1,8 @@
2000-05-26 Dan Winship <danw@helixcode.com>
+ * mail-format.c (handle_text_html): Fix a bug (security/stability)
+ in its usage of mail_html_write.
+
* mail-ops.c (composer_send_cb, reply): set CAMEL_MESSAGE_ANSWERED
on a message after a successful reply.
diff --git a/mail/mail-format.c b/mail/mail-format.c
index 46e279dd49..f0cc91617a 100644
--- a/mail/mail-format.c
+++ b/mail/mail-format.c
@@ -678,7 +678,7 @@ handle_text_html (CamelMimePart *part, CamelMimeMessage *root, GtkBox *box)
mail_html_write (html, stream, "\n<!-- text/html -->\n");
text = get_data_wrapper_text (wrapper);
- mail_html_write (html, stream, text);
+ mail_html_write (html, stream, "%s", text);
g_free (text);
mail_html_end (html, stream, FALSE, box);