Subject: Hardening insecure code
From: Al Nikolov <clown@debian.org>

Index: microdc2-0.15.6/src/screen.c
===================================================================
--- microdc2-0.15.6.orig/src/screen.c
+++ microdc2-0.15.6/src/screen.c
@@ -246,7 +246,7 @@ flag_vputf(DCDisplayFlag flag, const cha
 
         char* log_msg = main_to_log_string(msg);
         free(msg);
-        fprintf(log_fh, log_msg);
+        fprintf(log_fh, "%s", log_msg);
         free(log_msg);
         fflush(log_fh);
     }
