use snprintf instead of sprintf sprintf does not check for buffer overflows (CWE-120) modified: src/pacman/callback.c