[FFmpeg-cvslog] New commits on branch release/3.4

Git System git at videolan.org
Fri Nov 15 13:53:10 EET 2019


URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=955c310b75ddd1dccf29c9dec41c9dde252c05cd
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Wed Sep 25 15:54:45 2019 +0200

    avcodec/wmaprodec: get frame during frame decode
    
    Fixes: memleak
    Fixes: 17615/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_XMA2_fuzzer-5681306024804352
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Reviewed-by: Paul B Mahol <onemda at gmail.com>
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 0f89a2293ea5f642a67700225d76948ed154418e)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=9e635252fb158cbb02c60c208d040737b50f69d6
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Fri Oct 25 12:44:45 2019 +0200

    avcodec/interplayacm: Fix overflow of last unused value
    
    Fixes: signed integer overflow: -2147450880 - 65535 cannot be represented in type 'int'
    Fixes: 18393/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_INTERPLAY_ACM_fuzzer-5667520110919680
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 10eabb8e40df0ad84470d750f903917f4a05cb1f)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=965b610359eb761fe59b178f8634a42da3a20aac
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Fri Oct 25 11:12:02 2019 +0200

    avcodec/adpcm: Fix undefined behavior with negative predictions in IMA OKI
    
    Fixes: left shift of negative value -30
    Fixes: 18392/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_ADPCM_IMA_OKI_fuzzer-5631771831435264
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 7786f6c30e77a393b72ded01baa4250738925509)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=07f16ceb8e71c7ae07f45d7a560c20e5ab460d96
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Fri Oct 25 01:12:15 2019 +0200

    avcodec/cook: Move up and extend block_align check
    
    Fixes: signed integer overflow: 2046820356 * 8 cannot be represented in type 'int'
    Fixes: 18391/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_COOK_fuzzer-5631674666188800
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 1c63edcdd208bf18a3be66e94deb6ac115f6364e)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=d737429008ee2a4362c878bf44dfe966bc545698
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Tue Oct 22 15:41:51 2019 +0200

    avcodec/twinvq: Check block_align
    
    Fixes: signed integer overflow: 538976288 * 8 cannot be represented in type 'int'
    Fixes: 18348/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_METASOUND_fuzzer-6681325716635648
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 97f778e9c55328e8b48f4b8b4171245e5f2232f6)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=d3fe22a1dcec8d006e73744fbfb5fae64e6c279a
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Wed Oct 23 19:59:57 2019 +0200

    avcodec/cook: Enlarge gain table
    
    Fixes: index 25 out of bounds for type 'float [23]'
    Fixes: 18355/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_COOK_fuzzer-5641398941908992
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 50001cd440ac89ed125f0154dedbcfa2718d2d68)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=a76e4ba104badfe9e2e65916e90c2e41b15b5e04
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Wed Oct 23 19:41:27 2019 +0200

    avcodec/cook: Check samples_per_channel earlier
    
    Fixes: division by zero
    Fixes: 18362/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_COOK_fuzzer-5653727679086592
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 57750bb629a145326e20b8760f21f1041464a937)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=25727befccd1a545f89772d75bca45bf12d43b95
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Tue Oct 22 22:02:32 2019 +0200

    avcodec/atrac3plus: Check split point in fill mode 3
    
    Fixes: index 32 out of bounds for type 'int [32]'
    Fixes: 18350/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_ATRAC3P_fuzzer-5643794862571520
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit de5102fd92de8d353fdf060375ed3ce859c83977)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=8255244f19d81c1455167a7e710425b85ead94ce
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Wed Oct 23 22:32:47 2019 +0200

    avcodec/wmavoice: Check sample_rate
    
    Fixes: left shift of 538976288 by 8 places cannot be represented in type 'int'
    Fixes: 18376/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_WMAVOICE_fuzzer-5741645391200256
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 55c97a763783540ee48a326a3e82fbdea42f8280)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=f94127a40ef3c20f784b9e073be08e633f347430
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Wed Oct 23 22:08:37 2019 +0200

    avcodec/xsubdec: fix overflow in alpha handling
    
    Fixes: left shift of 255 by 24 places cannot be represented in type 'int'
    Fixes: 18368/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_XSUB_fuzzer-5702665442426880
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 9ea997395909907f569787d4ba5b96352ad31a80)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=4b8a0ce8f7934c14bface833def676b866076925
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Wed Oct 23 23:31:03 2019 +0200

    avcodec/iff: Check available space before entering loop in decode_long_vertical_delta2() / decode_long_vertical_delta()
    
    Fixes: Timeout (31sec -> 41ms)
    Fixes: 18380/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_IFF_ILBM_fuzzer-5645210121404416
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 32b3c8ce7d050210d210511cdb8c6644664a70ab)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=ffc4603e61453cbdd065c4d5f5da9de02aafbeae
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Mon Oct 21 00:26:25 2019 +0200

    avcodec/apedec: Fix integer overflow in filter_3800()
    
    Fixes: signed integer overflow: 2117181180 + 60483298 cannot be represented in type 'int'
    Fixes: 18344/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_APE_fuzzer-5685327791915008
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 1c038c5c63375883a8a94332cffd701c4cb1301a)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=5ebee49b343ba79449074b58d86e6b35f2b10667
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sun Oct 20 12:12:12 2019 +0200

    avutil/lfg: Document the AVLFG struct
    
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit d6fea2ef221a2f438cc55e82c61d0375750edf94)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=a687664dd48949e9483a715085f214dbe66721cb
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Thu Oct 17 23:22:22 2019 +0200

    avcodec/ffv1dec: Use a different error message for the slice level CRC
    
    This way they can be told apart easily
    
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit df498cf544fd4690e5a246925e4de1125b57795b)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=aaa9b96cf6bf257a4709015403e5bb5b38d1d8c8
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Thu Oct 17 20:56:23 2019 +0200

    avcodec/apedec: Fix undefined integer overflow in long_filter_ehigh_3830()
    
    Fixes: signed integer overflow: -1094995529 * 2 cannot be represented in type 'int'
    Fixes: 18281/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_APE_fuzzer-5692589180715008
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 1d1719a44dd43b2d9d8ccd26e3b2854e675a7bd7)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=3de0c702bdf13ef4fa14840c6060cf70d15716b4
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Tue Oct 15 23:42:50 2019 +0200

    avcodec/dstdec: Check that AC probabilities are within range
    
    ISO/IEC 14496-3:2005(E): "Each entry of P_one[ ][ ] is in the range of 1 to
    128, corresponding to a probability of 1/256 to 128/256 of the next error bit (bit E, See Figure 10.5)..."
    
    Fixes: Timeout (42sec ->1sec)
    Fixes: 18181/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_DST_fuzzer-5736646250594304
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 0c3e1b395b47fac44397604b2a3343c4bd92561c)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=2258982c8bfc99a6751bd1dc76891bbf3a01fc75
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Tue Oct 15 23:40:21 2019 +0200

    avcodec/dstdec: Check read_table() for failure
    
    Fixes: Timeout (too long -> 42sec)
    Fixes: 18181/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_DST_fuzzer-5736646250594304
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 03ea8d8cd45e55eeb9675c38184dc2149710a557)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=e0d167051e93bad55a4c009399de1545aa07eeb5
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Mon Oct 14 23:03:50 2019 +0200

    avcodec/snowenc: Set mb_num to avoid ratecontrol floating point divisions by 0.0
    
    Fixes: Ticket7990
    
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 55279d699fa64d8eb1185d8db04ab4ed92e8dea2)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=0c9ad1c746e3a8ccb7c6f292e10c8017c0a9dc3b
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Mon Oct 14 22:51:57 2019 +0200

    avcodec/snowenc: Fix 2 undefined shifts
    
    Fixes: Ticket7990
    
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 8802e329c8317ca5ceb929df48a23eb0f9e852b2)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=f4103876f90f3eb68b64a5015ed3a3a158e82883
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Fri Nov 1 10:02:29 2019 +0100

    avformat/nutenc: Do not pass NULL to memcmp() in get_needed_flags()
    
    This compared to the other suggestions is cleaner and easier to understand
    keeping the condition in the if() simple.
    
    This affects alot of fate tests.
    
    See: [FFmpeg-devel] [PATCH 05/11] avformat/nutenc: Don't pass NULL to memcmp
    See: [FFmpeg-devel] [PATCH]lavf/nutenc: Do not call memcmp() with NULL argument
    
    Fixes: Ticket 7980
    
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit e4fdeb3fcefeb98f2225f7ccded156fb175959c5)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=eda94068959f4990c161b36541f11005b6422978
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Tue Oct 8 22:52:56 2019 +0200

    avcodec/aacdec_template: Check samplerate
    
    Fixes: signed integer overflow: 2 * 1881153568 cannot be represented in type 'int'
    Fixes: 17996/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_AAC_FIXED_fuzzer-5687126468853760
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 7730bacb413fcb59f30acef0b2c6d50c5e6382d6)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=a154ec5f43a581a4f98deae948ee5e3a90ce39e1
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sat Oct 26 21:39:41 2019 +0200

    avcodec/truemotion2: Fix several integer overflows in tm2_low_res_block()
    
    Fixes: signed integer overflow: 1077952576 + 1355863565 cannot be represented in type 'int'
    Fixes: 16196/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_TRUEMOTION2_fuzzer-5679842317565952
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 2b655f55eaf09eb99b5e694dba2c0cf73fa2c646)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=64b961273aac24522a0f850386425a62ff933072
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Thu Oct 31 09:31:22 2019 +0100

    avcodec/utils: Check block_align
    
    Fixes: out of array access
    Fixes: 18432/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_WMAV2_fuzzer-5675574936207360
    Fixes: 18326/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_WMAV2_fuzzer-5071752362721280
    Fixes: 18384/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_WMAV1_fuzzer-5769439500304384
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Reviewed-by: Paul B Mahol <onemda at gmail.com>
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit f011572e66c8dd2f0ac3cb147a769e91f24e0202)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=2635bfb2b39e786da248f33be96baf5fc76feba5
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Mon Oct 28 00:12:59 2019 +0100

    avcodec/wmalosslessdec: Fix some integer anomalies
    
    Fixes: left shift of negative value -341180
    Fixes: 18401/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_WMALOSSLESS_fuzzer-5686380134400000
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Reviewed-by: Paul B Mahol <onemda at gmail.com>
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit d3dee676b8a8ab6752c599e25c9b5461f06a3959)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=7369aa201e71caee68a6d6e279163ec42ec1a43a
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sun Oct 27 23:38:47 2019 +0100

    avcodec/adpcm: Fix invalid shifts in ADPCM DTK
    
    Fixes: left shift of negative value -1
    Fixes: 18397/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_ADPCM_DTK_fuzzer-5675653487132672
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Reviewed-by: Paul B Mahol <onemda at gmail.com>
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 34e701ff93b664703e1bc1b1a6073fa058b02f34)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=132e4e5460c8c46c144bad7ae80fea1f2e0e0799
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sun Oct 27 23:26:52 2019 +0100

    avcodec/apedec: Only clear the needed buffer space, instead of all
    
    Fixes: Timeout (15sec -> 0.4sec)
    Fixes: 18396/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_APE_fuzzer-5730080487112704
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Reviewed-by: Paul B Mahol <onemda at gmail.com>
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit f17ea0200178a4dae446a6bec2f68312f41714a0)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=490f931494a8ff26581769f9e9de4a583e17a289
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sat Oct 26 23:58:02 2019 +0200

    avcodec/libvorbisdec: Fix insufficient input checks leading to out of array reads
    
    Fixes: 16144/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_LIBVORBIS_fuzzer-5638618940440576
    Fixes: out of array read
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 069be4aa5ddce4479b18896d80a852b144e680df)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=a1d6813649028b274679cdcff5d431824eeb77b4
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sat Oct 26 21:56:03 2019 +0200

    avcodec/g723_1dec: fix invalid shift with negative sid_gain
    
    Fixes: left shift of negative value -1
    Fixes: 18395/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_G723_1_fuzzer-5710313034350592
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Reviewed-by: Paul B Mahol <onemda at gmail.com>
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 1850c3feaa1c7b5b63a55c61075029fa59c84e66)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=68274f568e9187f73dac5762bc4238bd6422df26
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Wed Oct 23 20:57:12 2019 +0200

    avcodec/vp5: Check render_x/y
    
    Fixes: Timeout (15sec -> 91ms)
    Fixes: 18353/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_VP5_fuzzer-5704150326706176
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Reviewed-by: Peter Ross <pross at xvid.org>
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 698e042c77ecb5b0d616de254adc783e8b61b9c4)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=7b0ad24b1042d34470911fc43474a0c00eb79838
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Mon Oct 7 16:14:32 2019 +0200

    avcodec/qdrw: Check input for header/skiped space before get_buffer()
    
    Fixes: Timeout (21sec -> 0.8sec)
    Fixes: 17990/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_QDRAW_fuzzer-5200374436200448
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit b63fbc19c09d0b42da4f83c21fcf362d6ed7c545)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=4ed397df65552c2a50d78614124d94e9c2e857dc
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sat Oct 5 19:34:17 2019 +0200

    avcodec/ralf: Skip initializing unused filter variables
    
    Fixes: left shift of negative value -1
    Fixes: 17890/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_RALF_fuzzer-5643307467669504
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit f4ecf6c39de9a7cc1dae70cf87c225771001e883)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=e02dedf2670c380011f52b6243bf0a3a88906576
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sat Oct 5 19:52:53 2019 +0200

    avcodec/takdec: Fix overflow with large sample rates
    
    Fixes: signed integer overflow: 2147483647 + 511 cannot be represented in type 'int'
    Fixes: 17899/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_TAK_fuzzer-5719753322135552
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 42eb78059d149abcd994f46c8b8a0dd98e86b594)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=09e942aa4d597a75a3c510bf96583302ae707f30
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Fri Oct 4 19:35:15 2019 +0200

    avcodec/alsdec: Check that input space for header exists in read_diff_float_data()
    
    Fixes: Timeout (21sec -> 8sec)
    Fixes: 17832/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_ALS_fuzzer-5737092172218368
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 09581f7923ed9af7719762868e8f1ff626ea8374)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=b3d6eabd78338f5b1ba94f158980afce764f9d86
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Fri Oct 4 17:10:38 2019 +0200

    avformat/pjsdec: Check duration for overflow
    
    Fixes: signed integer overflow: -3 - 9223372036854775807 cannot be represented in type 'long'
    Fixes: 17828/clusterfuzz-testcase-minimized-ffmpeg_DEMUXER_fuzzer-5645915116797952
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 1efaac69328bdc17680924c71be7ec990f0e8f2c)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=8d483f9849b2293fced7a7b0a7d46226e9eaf4a4
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Wed Oct 2 22:05:52 2019 +0200

    avcodec/ptx: Check that the input contains at least one line
    
    Fixes: Timeout (19sec -> 44ms)
    Fixes: 17816/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_PTX_fuzzer-5704459950227456
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit a6ad328256fe6a6ace7d1e15f3515afccf1247fc)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=958cc68d51abb7db894675c6d0a71aa43ced77d6
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Tue Oct 1 00:16:20 2019 +0200

    avcodec/alac: Fix integer overflow in LPC
    
    Fixes: signed integer overflow: 2147483628 + 128 cannot be represented in type 'int'
    Fixes: 17783/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_ALAC_fuzzer-5146470595952640
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 44b73a0568f8ad5993ec79b29873151f316bf95c)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=b58e7868f20569357c5a68824e18b8b5d18dde7d
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Tue Oct 1 00:10:47 2019 +0200

    avcodec/smacker: Fix integer overflows in pred[] in smka_decode_frame()
    
    Fixes: signed integer overflow: -2147481503 + -32732 cannot be represented in type 'int'
    Fixes: 17782/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_SMACKAUD_fuzzer-5769672225456128
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit a76897e19ca96127e07f5acc5a773b904dcf6124)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=08972bff12b66670dc609719639f858f3fcc5f37
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Tue Oct 1 00:06:35 2019 +0200

    avcodec/aliaspixdec: Check input size against minimal picture size
    
    Fixes: Timeout (15sec -> 72ms)
    Fixes: 17774/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_ALIAS_PIX_fuzzer-5193929107963904
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 8c693104779830028bd5f76bf32a93e059c04d2c)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=8d7d6066efc84d88893ca5590a844627eecedd2c
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Mon Sep 30 00:35:15 2019 +0200

    avcodec/ffwavesynth: Fix integer overflows in pink noise addition
    
    Fixes: signed integer overflow: -1795675744 + -1926578528 cannot be represented in type 'int'
    Fixes: 17741/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_FFWAVESYNTH_fuzzer-5131336402075648
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 7916b6863caec55d7e64758a1bfe436834f2faf6)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=0dc659b8fbe5a7af4a25123481a855b75291f1de
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sat Sep 28 21:19:26 2019 +0200

    avcodec/vc1_block: Fixes integer overflow in vc1_decode_i_block_adv()
    
    Fixes: signed integer overflow: 62220 * 262144 cannot be represented in type 'int'
    Fixes: 17145/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_VC1IMAGE_fuzzer-5667394743173120
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 6fdeb208172dc95b29b965a0cc365ca0925e151e)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=c992a8301a3467572003e55e6f4da91e3919daaf
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sat Oct 19 19:18:18 2019 +0200

    avcodec/wmalosslessdec: Check block_align
    
    Fixes: NULL pointer dereference
    Fixes: 18331/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_WMALOSSLESS_fuzzer-5652847445671936
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Reviewed-by: Paul B Mahol <onemda at gmail.com>
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit c1c799271eefb8afe22804a710baa5cbaad57d91)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=f628f38f6e43c140167005593b447c47fd731a44
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Thu Oct 17 11:48:47 2019 +0200

    avcodec/g729postfilter: Fix left shift of negative value
    
    Fixes: Ticket8176
    
    Reviewed-by: Paul B Mahol <onemda at gmail.com>
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 5f0acc5064ed501cb40d4aaccae2b3ce5c4552fd)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=7c7e10372979dca4b1a6fc21653e8d46983f43de
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Fri Oct 11 00:40:07 2019 +0200

    avcodec/binkaudio: Check sample rate
    
    Fixes: signed integer overflow: 1092624416 * 2 cannot be represented in type 'int'
    Fixes: 18045/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_BINKAUDIO_RDFT_fuzzer-5718519492116480
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Reviewed-by: Paul B Mahol <onemda at gmail.com>
    Reviewed-by: Peter Ross <pross at xvid.org>
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 2fca09bce49c7de590560d9517fd2414b6c0c14f)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=22336d5c480a8cf06f0ee0cfe9e8b02ffe592916
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Fri Sep 27 18:02:17 2019 +0200

    avcodec/adpcm: Check initial predictor for ADPCM_IMA_EA_EACS
    
    Fixes: signed integer overflow: -2147483360 - 631 cannot be represented in type 'int'
    Fixes: 17701/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_ADPCM_IMA_EA_EACS_fuzzer-5711517319692288
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 2f66e8436d89963362acf533a60ed4fedb42546e)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=888df4b68ce6fd4c920509588000a634ff900f88
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Fri Sep 27 17:53:35 2019 +0200

    avcodec/g723_1dec: Fix overflow in shift
    
    Fixes: shift exponent 1008 is too large for 32-bit type 'int'
    Fixes: 17700/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_G723_1_fuzzer-5707633436131328
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 07732f12a43ac3048e44c086c9a8c811452ba31c)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=0041d3cebab4f28a4c80a7be01889c3ccdc9874c
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Fri Sep 27 17:19:36 2019 +0200

    avcodec/apedec: Fix integer overflow in predictor_update_3930()
    
    Fixes: signed integer overflow: -69555262 * 31 cannot be represented in type 'int'
    Fixes: 17698/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_APE_fuzzer-5728970447781888
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 5c072c9ed7c6f173b8a0a886fb7fe1e8e4c1fadd)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=4b4c26ca09b525168339df8697eb7f6bfe20345f
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Fri Sep 27 17:01:38 2019 +0200

    avcodec/g729postfilter: Fix undefined intermediate pointers
    
    Fixes: index -49 out of bounds for type 'int16_t [192]'
    Fixes: 17689/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_ACELP_KELVIN_fuzzer-5756275014500352
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 0c61661a2cbe1b8b284c80ada1c2fdddf4992cad)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=d998b81ce17f3fd3416b8e065910c73c1415297f
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Fri Sep 27 17:01:38 2019 +0200

    avcodec/g729postfilter: Fix undefined shifts
    
    Fixes: left shift of negative value -12
    Fixes: 17689/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_ACELP_KELVIN_fuzzer-5756275014500352
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 6a4fdbf112385824fc9b7d7739685359213b579a)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=6d62dbb46bca27941c328f7df4ac559e324d1882
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Fri Sep 27 17:01:38 2019 +0200

    avcodec/lsp: Fix undefined shifts in lsp2poly()
    
    Fixes: left shift of negative value -30635
    Fixes: 17689/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_ACELP_KELVIN_fuzzer-5756275014500352
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 2b93f52cd635f372b7b22396939e840c63e8edf3)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=6b85dc6569bbfb5c735c3fa7f76e862926559c39
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Fri Sep 27 12:04:57 2019 +0200

    avcodec/adpcm: Fix left shifts in AV_CODEC_ID_ADPCM_EA
    
    Fixes: left shift of negative value -1
    Fixes: 17683/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_ADPCM_EA_R2_fuzzer-5111690013704192
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 8695fbec573b0d434cf2e703a0d45742a09a5d94)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=3ba68a54000078d4faed0cfe4106695f25b1d8a3
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Tue Sep 24 22:52:03 2019 +0200

    avformat/shortendec: Check k in probe
    
    Fixes: Assertion failure
    Fixes: 17640/clusterfuzz-testcase-minimized-ffmpeg_DEMUXER_fuzzer-5708767475269632
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit ea770eb55941a6ed7b86828d6ea2f4e718a4b337)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=386b987f2a8c4abe507d2d58136acc0ef4ace9a3
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sat Oct 12 13:46:04 2019 +0200

    avfilter/vf_geq: Use av_clipd() instead of av_clipf()
    
    With floats we cannot represent all 32bit integer dimensions
    
    Reviewed-by: Paul B Mahol <onemda at gmail.com>
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit c8813b1a984714f0027cabeea2394035df20cf38)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=25a917e46f798350460df75e35cf87c07bff83b9
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sat Oct 12 18:32:08 2019 +0200

    avcodec/wmaprodec: Check that the streams channels do not exceed the overall channels
    
    Fixes: NULL pointer dereference
    Fixes: 18075/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_XMA1_fuzzer-5708262036471808
    Fixes: 18087/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_XMA1_fuzzer-5740627634946048
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Reviewed-by: Paul B Mahol <onemda at gmail.com>
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit e418b315ddd0505e707860f8cc8b796ce06f3458)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=34905f72198b59f4a2bb2f54c24d5c04b7414828
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Thu Oct 10 18:26:44 2019 +0200

    avcodec/qdmc: Check input space in qdmc_get_vlc()
    
    Fixes: Timeout (125sec -> 0.4sec)
    Fixes: 18059/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_QDMC_fuzzer-5656195825664000
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Reviewed-by: Paul B Mahol <onemda at gmail.com>
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 2c7975fe6f5c734fce9c59e8418c7f2de15a558d)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=5577079473003d0bc1e283197fd6f852b5491bce
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sun Sep 29 01:22:37 2019 +0200

    avcodec/pcm: Check bits_per_coded_sample
    
    Fixes: shift exponent -2 is negative
    Fixes: 17736/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_PCM_F16LE_fuzzer-5742815929171968
    Fixes: 17998/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_PCM_F24LE_fuzzer-5716980383875072
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Reviewed-by: Paul B Mahol <onemda at gmail.com>
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 5de19160a3c0dedb3cefd00e863a8d8f74ca2ad0)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=d109b2d41dfd552ef210bbd72eadfcad154f7b2b
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Thu Sep 26 15:40:30 2019 +0200

    avcodec/exr: Allow duplicate use of channel indexes
    
    Fixes: Ticket #8203
    
    Reported-by: durandal_1707
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 080819b3b4b59ef498511ac349414af85728349c)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=60c8cf09df541a6ba07de98aad6337813710246b
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Mon Sep 30 08:50:41 2019 +0200

    avcodec/fitsdec: Fail on 0 naxisn
    
    Fixes: Timeout (100+ sec -> 23ms)
    Fixes: 17769/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_FITS_fuzzer-5678314672357376
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Reviewed-by: Paul B Mahol <onemda at gmail.com>
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 4a3303d52096337dc109fbd523ecb4b46cddace1)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=4b7829bf9c71ec729af5177cc15377461a7a51f4
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Tue Sep 24 00:42:04 2019 +0200

    avcodec/ituh263dec: Check input for minimal frame size
    
    Fixes: Timeout (28sec -> 3sec)
    Fixes: 17559/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_H263_fuzzer-5681050776240128
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 7f0498ed461987b62bb97ff6463b4df108d60d78)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=c388edef742fc1099ba413a6657d2f48f5170704
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Tue Sep 24 01:43:35 2019 +0200

    avcodec/truemotion1: Check that the input has enough space for a minimal index_stream
    
    Fixes: Timeout (18sec -> 0.4sec)
    Fixes: 17585/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_TRUEMOTION1_fuzzer-5117015135617024
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 4a660fac9899191d4121cde02f2a98977b1303b6)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=f83710ee4bbb1ff171697c79dcd8a133bc56f736
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sat Sep 21 13:43:19 2019 +0200

    avformat/mpsubdec: Clear queue on error
    
    Fixes: Memleaks
    Fixes: 17219/clusterfuzz-testcase-minimized-ffmpeg_DEMUXER_fuzzer-5720539124989952
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 9a0d36e562d53716cf000895c2f892fb1f48165d)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=9462ca109fbb8dd9d6b1ec0aa2a2403db3395e82
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sat Sep 21 18:14:03 2019 +0200

    avcodec/sunrast: Check that the input is large enough for the maximally compressed image
    
    Fixes: Timeout (17sec -> 15ms)
    Fixes: 17224/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_SUNRAST_fuzzer-5663218491457536
    Fixes: 17224/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_SUNRAST_fuzzer-5735590015795200
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit bf0ba75c4a9231ed62afe60bed5bde2728971e30)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=3e5316bf2f5c7b58846d54d05b868e188e6778cf
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sat Sep 21 18:10:25 2019 +0200

    avcodec/sunrast: Check for availability of maplength before allocating image
    
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 711ad71aea7847883662bf95e01640d9745b313b)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=a7e147c85688ab3e16321eaf67e303e2dcf2da46
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Fri Oct 4 17:10:38 2019 +0200

    avformat/subtitles: Check nb_subs in ff_subtitles_queue_finalize()
    
    Fixes: null pointer dereference
    Fixes: 17828/clusterfuzz-testcase-minimized-ffmpeg_DEMUXER_fuzzer-5645915116797952
    Fixes: Ticket8147
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 81b53913bbb97234e22187d1122948c351a3466d)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=d458cfdcca2a1a68f1a731c43df2587c1aa1ab89
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Wed Oct 2 19:26:51 2019 +0200

    avcodec/wmaprodec: Check if there is a stream
    
    Fixes: null pointer dereference
    Fixes: signed integer overflow: 512 * 2147483647 cannot be represented in type 'int'
    Fixes: 17809/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_XMA1_fuzzer-5634409947987968
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Reviewed-by: Paul B Mahol <onemda at gmail.com>
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 9b533de28eb19c660c75823ff2af2f8549c4095a)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=29f07606b6b13739e8a19dc8eeab183fdde74ce8
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Mon Sep 9 20:30:32 2019 +0200

    avcodec/g2meet: Check for end of input in jpg_decode_block()
    
    Fixes: Timeout (100sec -> 0.7sec)
    Fixes: 8668/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_G2M_fuzzer-5174143888130048
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 61dd2e07be7ca636e1d3d868f90dde1b10985f4c)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=8ca3bf37abde85786dc21b154743eb21ab01bd5a
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Mon Sep 9 20:05:09 2019 +0200

    avcodec/g2meet: Check if adjusted pixel was on the stack
    
    This basically checks if a pixel that was coded with prediction
    and residual could have been stored using a previous case.
    This avoids basically a string of 0 symbols stored in less than
    50 bytes to hit a O(n²) codepath.
    
    Fixes: Timeout (too slow to wait -> immediately)
    Fixes: 8668/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_G2M_fuzzer-4895946310680576
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 9c84c162e9f9f000ef47d4fcd07354805f38d455)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=38800ac4dd0069aeda52e6b6dfb76bdc765a38d6
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Mon Sep 30 23:42:41 2019 +0200

    avformat/electronicarts: If no packet has been read at the end do not treat it as if theres a packet
    
    Fixes: Assertion failure
    Fixes: 17770/clusterfuzz-testcase-minimized-ffmpeg_DEMUXER_fuzzer-5700606668308480
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Reviewed-by: Peter Ross <pross at xvid.org>
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit c4de49edc4652e2f17c8747a6dd9b36ff362017a)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=3faa5c0fec8cc62b0c957095ec1b8ef5fc6d3ea5
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Fri Sep 27 12:31:39 2019 +0200

    avcodec/utils: Check sample_rate before opening the decoder
    
    Fixes: signed integer overflow: 2 * -1306460384 cannot be represented in type 'int'
    Fixes: 17685/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_AAC_fuzzer-5747390337777664
    Fixes: 17688/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_INTERPLAY_ACM_fuzzer-5739287210885120
    Fixes: 17699/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_INTERPLAY_ACM_fuzzer-5678394531905536
    Fixes: 17738/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_TAK_fuzzer-5763415733174272
    Fixes: 17746/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_BINKAUDIO_RDFT_fuzzer-5703008159006720
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Reviewed-by: James Almer <jamrial at gmail.com>
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 75fefb1fb7ac8b423e08a8dca19b19884a325ebf)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=64cfde80336eeed16a7a5efa78b561c1ec57b186
Author: James Almer <jamrial at gmail.com>
Date:   Sat Sep 28 23:11:06 2019 -0300

    avcodec/fitsdec: fix use of uninitialised values
    
    header.data_max and header.data_min are not necessarely set on all decoding scenarios.
    
    Fixes a Valgrind reported regression since cfa193779103c97bbfc28273a0ab12c114b6786d.
    
    Reviewed-by: Michael Niedermayer <michael at niedermayer.cc>
    Signed-off-by: James Almer <jamrial at gmail.com>
    (cherry picked from commit e3f0ecfc57889de0e0a359ec30b77851d53cea87)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=c6c9f2e30e12a9ce515751ef519857cc0843ce91
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sun Aug 11 22:28:09 2019 +0200

    avcodec/motionpixels: Mark 2 functions as always_inline
    
    Fixes: Timeout (30sec -> 25sec)
    Fixes: 17050/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_MOTIONPIXELS_fuzzer-5719149803732992
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 017884bdc3975528cacd5d23001558952cbdbabb)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=1f2d293fabe58dbc2ad81b42a96d58bd99aa8397
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sat Sep 14 14:26:49 2019 +0200

    avcodec/ralf: Fix integer overflow in decode_channel()
    
    Fixes: signed integer overflow: -1094995519 * 64 cannot be represented in type 'int'
    Fixes: 17030/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_RALF_fuzzer-5640695838146560
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit fbb314b6f2c2b77608442966f28aac20343a1cae)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=d5bca31f5821aa5406f50efbbdc4782fe2007dcc
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Tue Sep 10 20:20:31 2019 +0200

    vcodec/vc1: compute rangex/y only for P/B frames
    
    Fixes: left shift of 1073741824 by 1 places cannot be represented in type 'int'
    Fixes: 16976/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_VC1_fuzzer-4847262047404032
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit e75e7fe1601b97c31e3ce90473ab71b9a0667573)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=4ca1bcdfca019f925d162786f23ff2912c6155ff
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Tue Sep 10 18:57:25 2019 +0200

    avcodec/vc1_pred: Fix invalid shifts in scaleforopp()
    
    Fixes: left shift of negative value -2
    Fixes: 16964/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_VC1IMAGE_fuzzer-5757853565976576
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit ced9a1cd0ab76a65e509b0d7c56965d61ea1df84)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=c92c220d2cba85f08675824e81fb563693001a94
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Tue Sep 10 17:39:45 2019 +0200

    avcodec/vc1_block: Fix invalid shift with rangeredfrm
    
    Fixes: left shift of negative value -7
    Fixes: 16959/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_WMV3_fuzzer-5200360825683968
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit c722a69253a280b86b1d2a4ca00c89345a796781)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=47e61e223d305ab119463fb9e69db5bb8f1a1b1e
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Thu Aug 8 19:30:50 2019 +0200

    avcodec/vc1: Check for excessive resolution
    
    Fixes: overflow in aspect ratio calculation
    Fixes: signed integer overflow: 393215 * 14594 cannot be represented in type 'int'
    Fixes: 15728/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_WMV3IMAGE_fuzzer-5661588893204480
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 181e138da7207523b387eabc28d24e74a46248bc)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=bea0915aafe81babea34bb9909409fc39b3ed1d6
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sat Aug 31 22:00:35 2019 +0200

    avcodec/vc1: check REFDIST
    
    "9.1.1.43 P Reference Distance (REFDIST)"
    "The value of REFDIST shall be less than, or equal to, 16."
    
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 7f7af9e294f8bc00756922ab088430ea5b9d7498)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=860ae495c723c542e1fa52dfdf70991cfe11d17c
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Mon Sep 2 22:59:55 2019 +0200

    avcodec/apedec: Fix several integer overflows in predictor_update_filter() and do_apply_filter()
    
    Fixes: negation of -2147483648 cannot be represented in type 'int'; cast to an unsigned type to negate this value to itself
    Fixes: signed integer overflow: -14527961 - 2147483425 cannot be represented in type 'int'
    Fixes: 16380/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_APE_fuzzer-5645957131141120
    Fixes: 16968/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_APE_fuzzer-5716169901735936
    Fixes: 17074/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_APE_fuzzer-5198710497083392
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 1e95a3e8a7250060befd9a5fba69151bb2a6690c)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=538bfc605371ffe947913adfcb9851e6f22a7148
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Mon Sep 9 23:23:20 2019 +0200

    avcodec/hevc_cabac: Tighten the limit on k in ff_hevc_cu_qp_delta_abs()
    
    Values larger would fail subsequent tests.
    
    Fixes: signed integer overflow: 5 + 2147483646 cannot be represented in type 'int'
    Fixes: 16966/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_HEVC_fuzzer-5695709549953024
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit f63cd1963e36bc70211e072bac7eb3606cf85f14)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=5401126753f26382c5a2b25ce378a463314a3dff
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Tue Sep 17 19:53:45 2019 +0200

    avcodec/4xm: Check index in decode_i_block() also in the path where its not used.
    
    Fixes: Infinite loop
    Fixes: signed integer overflow: 2147483644 + 16 cannot be represented in type 'int'
    Fixes: 16169/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_FOURXM_fuzzer-5662570416963584
    Fixes: 16782/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_FOURXM_fuzzer-5743163859271680
    Fixes: 17641/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_FOURXM_fuzzer-5711603562971136
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Reviewed-by: Paul B Mahol <onemda at gmail.com>
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 87ddf9f1ef17726fd4235f2e7aed8334d0ff231b)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=6c93707b9f5acc97ec0701c77218941fbcf250d3
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Wed Sep 25 20:51:22 2019 +0200

    avcodec/atrac3: Check block_align
    
    Fixes: Infinite loop
    Fixes: 17620/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_ATRAC3_fuzzer-5086123012915200
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Reviewed-by: Paul B Mahol <onemda at gmail.com>
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 2acbbe262325187d87e8881c2984d203fb54207e)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=4aedbf234c41c6d2ed06d1d798b7a077dfd2121f
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Wed Sep 25 20:31:50 2019 +0200

    avcodec/alsdec: Avoid dereferencing context pointer in inner interleave loop
    
    This makes the decoder faster
    
    Improves/Fixes: Timeout (22sec -> 20sec)
    Testcase: 17619/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_ALS_fuzzer-5078510820917248
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Reviewed-by: Paul B Mahol <onemda at gmail.com>
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 581a895c5c8b464a7fc7ebbaa6d9f565c10bae62)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=b6a62d5bd4a4d6c34b5edb136b08f8ae93b3469c
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Mon Jul 15 23:42:42 2019 +0200

    avcodec/fitsdec: Prevent division by 0 with huge data_max
    
    Fixes: division by 0
    Fixes: 15657/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_FITS_fuzzer-5738154838982656
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Reviewed-by: Paul B Mahol <onemda at gmail.com>
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit cfa193779103c97bbfc28273a0ab12c114b6786d)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=f29bd3930f5dec34f73afe4e8531e9271bead5fe
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Wed Sep 25 16:48:46 2019 +0200

    avcodec/dstdec: Fix integer overflow in samples_per_frame computation
    
    Fixes: Timeout (? -> 2ms)
    Fixes: 17616/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_DST_fuzzer-5198057947267072
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Reviewed-by: Paul B Mahol <onemda at gmail.com>
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 7dc0943d4aa014e616e2f2a4802cb3da829f9420)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=d7d7c9b2caf8cecfcd27f2b262a7cb0367263983
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Wed Sep 25 01:07:34 2019 +0200

    avcodec/g729_parser: Check block_size
    
    Fixes: Infinite loop
    Fixes: 17611/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_ACELP_KELVIN_fuzzer-5765134928052224
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Reviewed-by: Paul B Mahol <onemda at gmail.com>
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 972a0a818ff7a9b33c7f37e08783f4b6082f9aa2)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=7bc4f1452f2b404855c56b8ad1aa4db5d08cdf9e
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Mon Dec 24 01:14:51 2018 +0100

    avcodec/utils: Optimize ff_color_frame() using memcpy()
    
    4650975 -> 4493240 dezicycles
    
    This optimizes lines 2 and later. Line 1 still uses av_memcpy_backptr()
    This change originally fixed ossfuzz 10790 but this is now fixed by other
    optimizations already
    
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 95e5396919b13a00264466b5d766f80f1a4f7fdc)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=b5a8b3883e44263b648a28c5e354e6d1d2fd55dc
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sun Sep 8 21:08:31 2019 +0200

    avcodec/aacdec: Check if we run out of input in read_stream_mux_config()
    
    Fixes: Infinite loop
    Fixes: 16920/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_AAC_LATM_fuzzer-5653421289373696
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 3dce4d03d5a555bff2e11f97fb54701b22effeaf)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=51618d1cbf3fbb6cdba44bcbfa812d1c657fb92c
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sun Sep 8 17:25:07 2019 +0200

    avcodec/utils: Use av_memcpy_backptr() in ff_color_frame()
    
    Fixes: Timeout (191sec -> 53sec)
    Fixes: 16908/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_H264_fuzzer-5711207859748864
    Fixes: 10709/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_H264_fuzzer-5630617975259136
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 340ab13504dddb71889f518983174d7bac7cfe96)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=6c4d2cc992cdcd414a149c8ab8213c121a06edc4
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Fri Sep 6 10:55:26 2019 +0200

    avcodec/smacker: Fix integer overflow in signed int multiply in SMK_BLK_FILL
    
    Fixes: signed integer overflow: 238 * 16843009 cannot be represented in type 'int'
    Fixes: 16958/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_SMACKER_fuzzer-5193905355620352
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 033d2c4884eca3f4f80047bff93255b0cc4fa7a3)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=9b73ca0bca6e3893a80580c1aedd5f46299d69e3
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Fri Sep 6 10:46:38 2019 +0200

    avcodec/alac: Fix invalid shifts in 20/24 bps
    
    Fixes: left shift of negative value -256
    Fixes: 16892/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_ALAC_fuzzer-4880802642395136
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit b30c07cc2b9ee5bc52e1782eba9aa40e99085a7e)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=8831d1c8501564b88820979dc241a00f99d9faf0
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Fri Sep 6 10:36:43 2019 +0200

    avcodec/alac: fix undefined behavior with INT_MIN in lpc_prediction()
    
    Fixes: signed integer overflow: -2147483648 * -1 cannot be represented in type 'int'
    Fixes: 16786/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_ALAC_fuzzer-5632818851348480
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 0831cbfe099192098d91e049ed9cf03c5a9cb376)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=ad7b379e426ee36f375f0f7ddff90775be0a46d8
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Thu Sep 5 20:47:04 2019 +0200

    avcodec/ffwavesynth: Fix integer overflow in timestamps
    
    Fixes: signed integer overflow: 9223371075321077760 * 2 cannot be represented in type 'long'
    Fixes: 16447/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_FFWAVESYNTH_fuzzer-5698937431785472
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit c7ccbf40edb81d40727cca3a7ffd1848d3ed880a)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=8567a8619598dff3be34789aa7bf5fcdd643fee7
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Mon Sep 23 23:52:04 2019 +0200

    avcodec/adpcm: Check number of channels for MTAF
    
    Fixes: out of array access
    Fixes: 17608/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_ADPCM_MTAF_fuzzer-5074936267276288
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Reviewed-by: Paul B Mahol <onemda at gmail.com>
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 74bbf9bc8279e0b8eba89c8cca68e8ad7ff547ed)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=1eb05c3bbb377eb3f3d8970df2032149fbe0dea7
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sat Sep 21 18:06:24 2019 +0200

    avcodec/sunrast: Fix indention
    
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 0728d644973c314785c26b3d0559ba829ca31641)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=0b8b5fea94391fc44facaeb74e55de710df7941e
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sat Sep 21 18:06:02 2019 +0200

    avcodec/sunrast: Fix return type for "unsupported (compression) type"
    
    Reviewed-by: Paul B Mahol <onemda at gmail.com>
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 0e8b7709a92afd7c10b4b5861870f6e365f280c3)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=b1f0a2bdefa9519a0aea33cfba7ef8e18035ad2c
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sat Aug 31 01:25:03 2019 +0200

    avformat/mov: Check for EOF in mov_read_meta()
    
    Fixes: Timeout (195sec -> 2ms)
    Fixes: 16735/clusterfuzz-testcase-minimized-ffmpeg_DEMUXER_fuzzer-5090676403863552
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 093d1f42507e07d9acb43a8a3135e4ebe3530fe2)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=c888b34b1c55e41826a9692cf9707dc0959d55f8
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sun Jun 30 19:40:37 2019 +0200

    avcodec/hevcdec: Fix memleak of a53_caption
    
    Fixes: 15295/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_HEVC_fuzzer-5675655187922944
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit ef50cf7b32b91af303e37236f22e2e89971a84b7)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=f369b5b287b5f0df23863be037c5a040cf03653e
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sat Aug 31 00:20:39 2019 +0200

    avformat/cdxl: Fix integer overflow in intermediate
    
    Fixes: signed integer overflow: 65535 * 65312 cannot be represented in type 'int'
    Fixes: 16704/clusterfuzz-testcase-minimized-ffmpeg_DEMUXER_fuzzer-6294115603447808
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 5c5575c8dc892473ef9d35ca6419e8dabbc5e5ac)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=a77652e93e4f64a99450f7f71308b2d298623324
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Wed Aug 28 19:01:41 2019 +0200

    avcodec/hevcdec: repeat character in skiped
    
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit d2d8e797cc4f3cea3470d464bd5f51cd097fe371)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=71e74978b414064a201ed80b4016ee982896c319
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Wed Aug 28 21:53:05 2019 +0200

    avcodec/gdv: Replace assert() checking bitstream by if()
    
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit a9fae76370baf11a03b2c0ea590bb2d2f3f372ce)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=1b90d7bbde65b297f372b62560fafb39309f18ee
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Tue Aug 27 17:21:00 2019 +0200

    libavcodec/utils: Free threads on init failure
    
    Fixes: Multiple memleaks
    Fixes: ffmpeg-memory-leak
    
    Found-by: Francis Provencher <francis at protekresearchlab.com>
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 61b055bed0968d60eb24a5080fb4ba2bcf73b753)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=a663d186a635ece13274ea04921d136a17f14e07
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Wed Aug 28 21:56:35 2019 +0200

    avcodec/htmlsubtitles: Avoid locale dependant isdigit()
    
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit b94cf549e2d9e456d77f8539baca0fffa805ba69)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=a003c985bb8659809e3ac774d0dd717638d90586
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sun Aug 25 18:22:50 2019 +0200

    avcodec/alsdec: Check k from being outside what our implementation can handle
    
    The specification does not seem to list what the maximum valid
    value is
    
    Fixes: shift exponent 32 is too large for 32-bit type 'unsigned int'
    Fixes: 16268/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_ALS_fuzzer-5638164544225280
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit e1255789941d213a8e193469d0687946c9fa4a63)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=da76ca55518e6c19beee3dfcaa2189c6fd21f061
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sun Aug 25 17:49:15 2019 +0200

    avcodec/takdec: Fix integer overflow in decorrelate()
    
    Fixes: signed integer overflow: -2424832 - 2145653689 cannot be represented in type 'int'
    Fixes: 16138/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_TAK_fuzzer-5643451346976768
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit f1192736494a5b16717de66da4a3d3c6af0e9a7a)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=089b1e16770be2903b2a0c9fb3e394f5c64c3918
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sat Aug 24 00:11:02 2019 +0200

    avcodec/aacps: Fix integer overflows in hybrid_synthesis()
    
    Fixes: signed integer overflow: -822667928 + -1399761199 cannot be represented in type 'int'
    Fixes: 15756/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_AAC_FIXED_fuzzer-5645182051024896
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit ec749ed2225e0c33f0910fc318c73da6f4ceb587)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=bc2fb4cf8a6c572df841d8fa8fd0f7246f0b88ca
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Tue Aug 20 09:16:40 2019 +0200

    avcodec/vp56rac: delay signaling an error on truncated input
    
    A threshold of 1 is sufficient for simple_dump_cut.webm, 10 is used
    just to be sure the next truncated file doesnt cause the same issue
    
    Obvious alternative fixes are to simply accept that the file is broken or to
    write some advanced error concealment or to
    simply accept that the decoder wont stop at the end of input.
    
    Fixes: Ticket 8069 (artifacts not the differing md5 which was there before 1afd246960202917e244c844c534e9c1e3c323f5)
    Fixes: simple_dump_cut.webm
    Fixes: regression of 1afd246960202917e244c844c534e9c1e3c323f5
    
    fate-vp5 changes because the last frame is truncated and now handled
    differently.
    
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit b6b9ac5698c8f911841b469af77199153278c55c)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 70fb3fa990d604211d5b24fc43cdfe31560de250)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=8e41f410774be95db22bea924a4fd19233f73df5
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Tue Aug 20 11:51:48 2019 +0200

    avcodec/vp5/6/8: use vpX_rac_is_end()
    
    Reviewed-by: Peter Ross <pross at xvid.org>
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit ab56e62e8f7e02760cfc883956511cab32393315)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 1dd89192c59df0d6655e9308a0782d8c7b259b18)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=ad3452eb25604ebff8f93311407fec060bf78096
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sat Aug 11 22:28:31 2018 +0200

    avcodec/vp56: Add vpX_rac_is_end() to check for the end of input
    
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 0fb83b4c91d5a0784ca81df4283f25740c263f20)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=f1b943df926635b189f59887dac81b9476185e1a
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Thu Aug 29 21:26:43 2019 +0200

    avcodec/qdm2: Check frame size
    
    Fixes: index 2304 out of bounds for type 'float [2304]'
    Fixes: 16332/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_QDM2_fuzzer-5679142481166336
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 12b909ba319d32ed100d9b26021aa9b6976424d7)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=18c0c14a056888aa7c5b88373363700a5a1fec05
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sat Aug 31 22:12:38 2019 +0200

    avcodec/vc1_pred: Fix refdist in scaleforopp()
    
    Fixes: out of array access
    Fixes: 16601/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_VC1IMAGE_fuzzer-5656105392275456
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 413e0f2516eef678011cffd1ec6f0d92aa8bb96a)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=eeb1e37e7645867fc3cc25adb7d1a4a315519b68
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Fri Sep 6 12:06:30 2019 +0200

    avcodec/vorbisdec: fix FASTDIV usage for vr_type == 2
    
    This reverts a hunk from f1ca40ee00402102046fc7e59606651930436b0e
    
    Fixes: out of array read
    Fixes: 16924/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_VORBIS_fuzzer-5157893162139648
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 722fd4696583cc984700eaec4745922ae177b2da)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=79e06f4d316b550c08749b43f0f5f29c1bdca56d
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Wed Aug 21 23:22:39 2019 +0200

    avcodec/iff: Check for overlap in cmap_read_palette()
    
    Fixes: undefined memcpy() use
    Fixes: 16302/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_IFF_ILBM_fuzzer-5678750575886336
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit dfa5d1a3667fa38e07373becc2401175b31d8228)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=6d1f143ae128d02e68cbb7895ef6302e883c008d
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Mon Sep 2 22:44:50 2019 +0200

    avcodec/apedec: Fix 32bit int overflow in do_apply_filter()
    
    Fixes: signed integer overflow: 2147480546 + 4096 cannot be represented in type 'int'
    Fixes: 16280/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_APE_fuzzer-5123442566758400
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Reviewed-by: Tomas Härdin <tjoppen at acc.umu.se>
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 9d3ddef519e88c40c05be8cb94cd9e71c0957ec7)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=aefa5dd5a4880ff5093db5b095ef6510afcabd65
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sat Aug 17 19:25:01 2019 +0200

    avcodec/ralf: fix undefined shift in extend_code()
    
    Fixes: left shift of negative value -3
    Fixes: 16147/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_RALF_fuzzer-5658392722407424
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 4778407ab3b545c40def7e95a8f9dd4ae92a4e8e)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=7096eb193c02b674dceccca740bc0938cca66a9f
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sat Aug 17 19:18:31 2019 +0200

    avcodec/ralf: fix undefined shift
    
    Fixes: left shift of negative value -2
    Fixes: 16145/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_RALF_fuzzer-5146671058518016
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 0ee886988e75b3c22cabc2ca0fadcf8e4f787640)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=cb1af09dd0e7a086d17ecc77f1fe37115c972cd3
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sun Sep 1 22:31:45 2019 +0200

    avcodec/bgmc: Check input space in ff_bgmc_decode_init()
    
    Fixes: Infinite loop
    Fixes: 16608/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_ALS_fuzzer-5636229827133440
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Reviewed-by: Thilo Borgmann <thilo.borgmann at mail.de>
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit b54031a6e93d1abc7fb2d0263e0f6c4b639e423f)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=0ccc7efc4d8eaa556d002d5dfccbc1f91685ac2c
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Thu Aug 15 23:22:50 2019 +0200

    avcodec/truemotion2: Fix multiple integer overflows in tm2_null_res_block()
    
    Fixes: signed integer overflow: 1795032576 + 598344192 cannot be represented in type 'int'
    Fixes: 16196/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_TRUEMOTION2_fuzzer-5636723419119616
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit cc78783ce5e8837d4f4ca43eedf2d299651e65ff)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=befb2f717b64a99ea0e8d94c8e482306ae389edc
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Thu Aug 15 20:04:35 2019 +0200

    avcodec/vc1dec: Require res_sprite for wmv3images
    
    non res_sprite leads to decoder delay which leads to assertion failure
    Fixes: Assertion failure
    Fixes: 16402/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_WMV3IMAGE_fuzzer-5704510034411520
    Fixes: left shift of 1073741824 by 1 places cannot be represented in type 'int'
    Fixes: 16425/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_WMV3IMAGE_fuzzer-5692858838810624
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 9c6b4004928ef41563b0e913666f8da27fdb2399)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=29765b3be363df5ff0b6d5cb7400fdf3aa101b71
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Thu Aug 15 18:47:54 2019 +0200

    avcodec/vc1_block: Check for double escapes
    
    Fixes: out of array read
    Fixes: 16331/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_WMV3IMAGE_fuzzer-5672735195267072
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 6962fd586e1a9a98828866dcfb4114af30c8c756)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=62afc95281c690306c3faf6ea2118ec10b2bee7c
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Mon Jul 8 01:18:05 2019 +0200

    avcodec/vorbisdec: Check get_vlc2() failure
    
    Fixes: out of array read
    Fixes: 16510/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_VORBIS_fuzzer-5754510382727168
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 07b948fe60789064d7c784d47b8fe798a9a4d2b9)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=1b4b7a7de1c5a90cc95cf22a11bdd22aed5788f8
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sun Aug 11 20:56:44 2019 +0200

    avcodec/tta: Fix integer overflow in prediction
    
    Fixes: signed integer overflow: -395281576 + -1827578048 cannot be represented in type 'int'
    Fixes: 16038/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_TTA_fuzzer-5646109705240576
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 7e9aecc9f358901426c134978e764ee7beac4944)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=697383e1789b18266edc2804521d694967f68fdb
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Mon Aug 12 00:21:49 2019 +0200

    avcodec/vb: Check input packet size to be large enough to contain flags
    
    Fixes: Timeout (->9sec)
    Fixes: 16292/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_VB_fuzzer-5747063496638464
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit dea2591d4fbc989ca82bc8a8ad7d16aacdc89af1)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=891508dd8892e055b3f05c26ccd58f167c2ffb5f
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sat Aug 10 17:34:37 2019 +0200

    avcodec/cavsdec: Limit the number of access units per packet to 2
    
    Fixes: Timeout (122sec -> 13ms)
    Fixes: 15978/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_CAVS_fuzzer-5148925004087296
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 37bc8e3249c88b733bcc0d8c74cdf668292e4d63)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=1f47a0135e7c6c8c5dc8ac81495f8bc5c7d97d97
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Fri Aug 9 01:23:49 2019 +0200

    avcodec/alac: Check for bps of 0
    
    Fixes: shift exponent 32 is too large for 32-bit type 'unsigned int'
    Fixes: 15764/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_ALAC_fuzzer-5102101203517440
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Reviewed-by: James Almer <jamrial at gmail.com>
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 8f49176e845fee8e4e0aaf06411636b46d1ae3ad)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=cc70b01c394e46c1f4b711de615b45763ce1eef0
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Thu Aug 8 19:48:19 2019 +0200

    avcodec/alac: Fix multiple integer overflows in lpc_prediction()
    
    Fixes: signed integer overflow: 2088795537 + 2147254401 cannot be represented in type 'int'
    Fixes: signed integer overflow: -1500363496 + -1295351808 cannot be represented in type 'int'
    Fixes: signed integer overflow: -79560 * 32640 cannot be represented in type 'int'
    Fixes: signed integer overflow: 2088910005 + 2088796058 cannot be represented in type 'int'
    Fixes: signed integer overflow: -117258064 - 2088725225 cannot be represented in type 'int'
    Fixes: signed integer overflow: 2088725225 - -117258064 cannot be represented in type 'int'
    Fixes: 15739/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_ALAC_fuzzer-5630664122040320
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit ae3d6a337ad25527bcd3172e3885e45fadf9908c)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=793ff83b165da2eb199e2c36954229b251a45b44
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Mon Jul 22 23:24:35 2019 +0200

    avcodec/rl2: set dimensions
    
    The dimensions are always 320x200 they are hardcoded in the demuxer.
    Hardcode them instead in the decoder.
    
    Fixes: Timeout (16sec -> 400ms)
    Fixes: 15574/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_RL2_fuzzer-5158614072819712
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 965e766e4892cfc45c97cca88895248a7735e7d0)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=3381c2bd9b687564224b59004fe70c790a69b8ee
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Thu Aug 22 23:43:48 2019 +0200

    avcodec/aacdec: Add FF_CODEC_CAP_INIT_CLEANUP
    
    Fixes: memleaks
    Fixes: 16289/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_AAC_LATM_fuzzer-5200695692623872
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Reviewed-by: Paul B Mahol <onemda at gmail.com>
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 48b86dd8a6bf50a7d8ab0343a1535bc4b0b5b196)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=b72b3d43ed3b87031405efe067ac8b4e767fc040
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Thu Aug 22 19:13:56 2019 +0200

    avcodec/idcinvideo: Add 320x240 default maximum resolution
    
    Fixes: Timeout (128sec -> 2ms)
    Fixes: 16568/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_IDCIN_fuzzer-5675004095627264
    
    See: [FFmpeg-devel] [PATCH 4/4] tools/target_dec_fuzzer: Adjust max_pixels for IDCIN
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Reviewed-by: Tomas Härdin <tjoppen at acc.umu.se>
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit c9fcf881e69e34a2acfa2bb7052ca200cab16740)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=032fc5b082fafd931cb3a71d8e0b6da2deeda1d7
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Wed Aug 21 20:37:17 2019 +0200

    avformat/realtextdec: free queue on error
    
    Fixes: memleak
    Fixes: 16277/clusterfuzz-testcase-minimized-ffmpeg_DEMUXER_fuzzer-5696629440512000
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Reviewed-by: James Almer <jamrial at gmail.com>
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 493438fafc5c43b7b7c62bf0c21b7cc884034ce9)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=9dd231c42c3fe427444632627be4dc31a4ce459a
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Mon Aug 19 01:30:53 2019 +0200

    avcodec/alsdec: Fix integer overflow in decode_var_block_data()
    
    Fixes: signed integer overflow: 1927975249 - -514719744 cannot be represented in type 'int'
    Fixes: 16413/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_ALS_fuzzer-5651206856245248
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Reviewed-by: Thilo Borgmann <thilo.borgmann at mail.de>
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 661a9b274b0181b2e36ff21fd13840f35992bea6)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=e37b9df6c9827d61f5aea987d85072a33b33f4dc
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Tue Aug 20 16:52:07 2019 +0200

    avcodec/alsdec: Limit maximum channels to 512
    
    There seems to be no limit in the specification and upto 64k could be stored
    512 is choosen as limit as thats the maximum in a conformance sample
    
    An alternative to this patch would be a max_channels variable
    
    Fixes: OOM
    Fixes: 16200/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_ALS_fuzzer-5764788793114624
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Suggested-by: Thilo Borgmann <thilo.borgmann at mail.de>
    Reviewed-by: Thilo Borgmann <thilo.borgmann at mail.de>
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit f51e4d026cc762ff2d47d6107658dbff42ba5ea8)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=12f5cb95f8b46c047843221c8501378d604b43e8
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Thu Aug 15 21:00:54 2019 +0200

    avcodec/anm: Check input size for a frame with just a stop code
    
    Fixes: Timeout (11sec -> 6sec)
    Fixes: 16344/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_ANM_fuzzer-5673032000995328
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Reviewed-by: Peter Ross <pross at xvid.org>
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 1965161ef6d2aac8d3b034570c3da69dabca9e71)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=5349964e02f73eec0ff4edd3df76d6a0dea3be43
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Mon Aug 12 21:17:05 2019 +0200

    avcodec/flicvideo: Optimize and Simplify FLI_COPY in flic_decode_frame_24BPP() by using bytestream2_get_buffer()
    
    Fixes: Timeout (31sec  -> 22sec)
    Fixes: 16217/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_FLIC_fuzzer-5658084189405184
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Reviewed-by: Tomas Härdin <tjoppen at acc.umu.se>
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit e301736862f18a449c317a47d0d60d3484e41667)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=36e34701955e843599fa582bc6ed2863cf265585
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Mon Aug 12 21:17:04 2019 +0200

    avcodec/loco: Check left column value
    
    Fixes: Timeout (42sec -> 379 ms)
    Fixes: 16323/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_LOCO_fuzzer-5679178099195904
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Reviewed-by: Paul B Mahol <onemda at gmail.com>
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit c812db814ebd603106220854e343558ec1115e57)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=50b07e145bf2a37528cee4e2a5916d3978243705
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sat Aug 10 23:09:45 2019 +0200

    avcodec/ffwavesynth: Fixes invalid shift with pink noise seeking
    
    Fixes: left shift of negative value -961533698048
    Fixes: 16242/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_FFWAVESYNTH_fuzzer-5738550670131200
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Reviewed-by: Nicolas George <george at nsup.org>
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit cdea0206efeca83a0a9b57d0764b177b2e11ab7c)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=a2d0ed8718ec807fd5eeaf5dd0a715defa791b5a
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sat Aug 10 23:09:44 2019 +0200

    avcodec/ffwavesynth: Fix integer overflow for some corner case values
    
    Fixes: left shift of negative value -14671840
    Fixes: 16000/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_FFWAVESYNTH_fuzzer-5145977817661440
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit c4a88fb546b64179aff12c169239285932e570ac)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=66e60b3c968541ed82fc0d7e10c6c76bb6bdbc05
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Thu Aug 1 00:50:21 2019 +0200

    avcodec/indeo2: Check remaining input more often
    
    Fixes: Timeout (95sec -> 30ms)
    Fixes: 14765/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_INDEO2_fuzzer-5692455527120896
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpe
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 52939a2c5772ec00101d293695d0a96dcccf99d9)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=87a487157190d88574b44759bbf5d0b5299ed388
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Thu Aug 1 01:49:47 2019 +0200

    avcodec/diracdec: Check that slices are fewer than pixels
    
    Fixes: Timeout (197sec ->144ms)
    Fixes: 15034/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_DIRAC_fuzzer-5733549405110272
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit fbbc8ba67f19d55380b1bc8b5f057328c266d747)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=b9b9106f25d2608bec368164a6e2273d922f4db1
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Tue Aug 6 23:30:02 2019 +0200

    avcodec/vp56: Consider the alpha start as end of the prior header
    
    Fixes: Timeout (23sec -> 71ms)
    Fixes: 15661/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_VP6A_fuzzer-6257865947348992
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Reviewed-by: Peter Ross <pross at xvid.org>
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit db78bc1297ebaa51cfe5c80775808ec11ed7512b)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=32b4512aeca862815363a99ea1e84b87205d4053
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Mon Aug 12 02:17:18 2019 +0200

    avcodec/4xm: Check for end of input in decode_p_block()
    
    Fixes: Timeout (81sec -> 0.2sec)
    Fixes: 16169/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_FOURXM_fuzzer-5662570416963584
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Reviewed-by: Paul B Mahol <onemda at gmail.com>
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 8f92eb05e063e6c4d6e36521020620d4e6e1c21d)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=1adb5720a2a5bd0ecc74e9df319ce5f019a42fca
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Mon Aug 12 02:17:15 2019 +0200

    avcodec/hevcdec: Check delta_luma_weight_l0/1
    
    Fixes: signed integer overflow: 1 + 2147483647 cannot be represented in type 'int'
    Fixes: 16041/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_HEVC_fuzzer-5685680656613376
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Reviewed-by: James Almer <jamrial at gmail.com>
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 021f29506b493376d62cdb5b9cb66a6b85e5361f)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=0ca85d1326d0c2aae7940a904030dd93e96aa234
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sat Aug 3 01:49:55 2019 +0200

    avcodec/hnm4video: Optimize postprocess_current_frame()
    
    Improves: Timeout (220sec -> 108sec)
    Improves: 15570/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_HNM4_VIDEO_fuzzer-5085482213441536
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Reviewed-by: Tomas Härdin <tjoppen at acc.umu.se>
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit cd460f4da04c05d6ba93ccbbe294e948768f0937)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=23f54b4db28ae5fe35f92e521b76f49e7d989eb9
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Tue Aug 6 18:05:02 2019 +0200

    avcodec/hevc_refs: Optimize 16bit generate_missing_ref()
    
    Fixes: Timeout (86sec -> 8sec) [these numbers assume also "[FFmpeg-devel] [PATCH 2/5] [RFC] avcodec/hevcdec: Check for overread in hls_decode_entry()"]
    Fixes: 15702/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_HEVC_fuzzer-5657764929470464
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit da8936969fe695a042282d5686e12227745d299a)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=fd897acc35d45f0b72aee2021170a679b53ffe50
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Tue Jul 30 00:52:18 2019 +0200

    avcodec/scpr: Use av_memcpy_backptr() in type 17 and 33
    
    This makes the changed code-path faster.
    
    Change not tested except with the fuzzer testcase as I found no other testcase.
    
    Improves: Timeout (136sec -> 74sec)
    Improves: 16040/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_SCPR_fuzzer-5705876062601216
    
    Reviewed-by: Paul B Mahol <onemda at gmail.com>
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    (cherry picked from commit 950a21e83c742714d6afbecd3e3fd1887e80fa40)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=26d48144e5994ea88a21d7a8918e231ae6d86c9d
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sat Aug 10 23:09:49 2019 +0200

    avcodec/dds: Use ff_set_dimensions()
    
    Fixes: signed integer overflow: 2082471995 * 36 cannot be represented in type 'int'
    Fixes: 16025/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_DDS_fuzzer-5136663778426880
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Reviewed-by: Paul B Mahol <onemda at gmail.com>
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 9cd1e939cf26e7a53f28cbbda22d27535981b9db)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=dbc9f38aac161de909d55c534f6b7721fa33a9e1
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sat Aug 10 23:09:42 2019 +0200

    avcodec/mpc8: Fix 32bit mask/enum
    
    Fixes: left shift of 1 by 31 places cannot be represented in type 'int'
    Fixes: 15817/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_MPC8_fuzzer-5636626409062400
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Reviewed-by: Paul B Mahol <onemda at gmail.com>
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit e8bb949ade4078ca318a9b3475cb7a6cfc7e4639)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=e80c90eadba45349f89d85a1048cf08e95158c90
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Fri Jul 26 15:37:30 2019 +0200

    avcodec/alsdec: Fix integer overflows of raw_samples in decode_var_block_data()
    
    This also makes the code consistent with the existing similar MUL64()
    in decode_var_block_data()
    
    Fixes: signed integer overflow: -7277630735906765035 + -3272193951413647896 cannot be represented in type 'long'
    Fixes: 16015/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_ALS_fuzzer-5666552818434048
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit fad3ec89b7a664b93b5e29bdb0db0cab0272a0c4)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=fb12d635c5ca96eb5c164d7a0d362ff7cd17247a
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Fri Jul 26 14:33:14 2019 +0200

    avcodec/alsdec: Fix integer overflow of raw_samples in decode_blocks()
    
    Fixes: signed integer overflow: 2147483424 - -1772303236 cannot be represented in type 'int'
    Fixes: 15708/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_ALS_fuzzer-5067890362941440
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit ce652324062a2c72f92e40699797630ef7f1ec5a)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=351381a3e3443e6e6330cc122d3a5ee0b550bfae
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Fri Jul 26 17:07:01 2019 +0200

    avcodec/alsdec: fix mantisse shift
    
    Fixes: shift exponent -1 is negative
    Fixes: 16039/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_ALS_fuzzer-5656825657032704
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 02346292a334a51f6da802146b782bdb01ae9b4e)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=e5661aa706368c9c2fb4f8e4c43d1996a3e49265
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Wed Jul 10 00:04:02 2019 +0200

    avcodec/aacdec_template: fix integer overflow in imdct_and_windowing()
    
    Fixes: signed integer overflow: 2147483645 + 4 cannot be represented in type 'int'
    Fixes: 15418/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_AAC_FIXED_fuzzer-5685269069561856
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit da93e2b14218c4ab0fda60e21882a4633aac5748)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=dbc9034dc2d715fc415e5747ded7e8ca1ece533c
Author: Andreas Rheinhardt <andreas.rheinhardt at gmail.com>
Date:   Fri Aug 2 22:29:16 2019 +0200

    libavcodec/iff: Use unsigned to avoid undefined behaviour
    
    The initialization of the uint32_t plane32_lut matrix uses left shifts
    of the form 1 << plane; plane can be as big as 31 which means that this
    is undefined behaviour as 1 will be simply an int. So make it unsigned
    to avoid this.
    
    Signed-off-by: Andreas Rheinhardt <andreas.rheinhardt at gmail.com>
    Reviewed-by: Paul B Mahol <onemda at gmail.com>
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit f12e662a3d3f489eec887b5f2ab20a550caed9cf)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=c3ab134903c75df7c562b15ed6a40fa251d3b856
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Fri Jul 26 15:26:08 2019 +0200

    avcodec/alsdec: Check for block_length <= 0 in read_var_block_data()
    
    Fixes: left shift of negative value -1
    Fixes: 15719/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_ALS_fuzzer-5685731105701888
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit be4fb282f9fb00d9c267dcc477745e2e468e758f)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=4aaf644892843e3c68f4761725ab9435745f015c
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Fri Jul 26 00:35:32 2019 +0200

    avcodec/vqavideo: Set video size
    
    Fixes: out of array access
    Fixes: 15919/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_VQA_fuzzer-5657368257363968
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 02f909dc24b1f05cfbba75077c7707b905e63cd2)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=e17bf0ab54ed42a7bf910730cca4659155a52fe9
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Mon Jul 15 23:26:05 2019 +0200

    avcodec/sanm: Check extradata_size before allocations
    
    Fixes: Leaks
    Fixes: 15349/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_SANM_fuzzer-5102530557640704
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 172a43ce36e671fdab63afe1c06876bba91445b3)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=703ddaeac24143dc35659cf8331456cfc52da190
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sat Aug 3 00:29:48 2019 +0200

    avcodec/mss1: check for overread and forward errors
    
    Fixes: Timeout (106sec -> 14ms)
    Fixes: 15576/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_MSS1_fuzzer-5688080461201408
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Reviewed-by: Paul B Mahol <onemda at gmail.com>
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 43015afd7ce9055f1fa2d7648c3fcd9b7cfd7721)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=fbb686fe1a3108b1896ec115b89599ed3fb5c929
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Thu Jul 11 23:23:07 2019 +0200

    avcodec/dirac_parser: Fix overflow in dts
    
    Fixes: signed integer overflow: -2147483648 - 1 cannot be represented in type 'int'
    Fixes: 15568/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_DIRAC_fuzzer-5634719611355136
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Reviewed-by: Paul B Mahol <onemda at gmail.com>
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 549fcba8fc83330763ccd3cc67233037c96bc6d9)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=499ec067adbd78a3bda607c92bf4bf24c33ecfe4
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sun Aug 4 17:25:55 2019 +0200

    avcodec/ralf: Fix undefined pointer in decode_channel()
    
    Fixes: 16203/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_RALF_fuzzer-5086088934195200
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 3c06ba171697b665ef4b2b47fe0008199b3eff86)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=0f11aa263e90f10f0611667d2df29e345512e99d
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sun Aug 4 17:20:45 2019 +0200

    avcodec/ralf: Fix integer overflow in apply_lpc()
    
    Fixes: signed integer overflow: 1603085316 + 1238786562 cannot be represented in type 'int'
    Fixes: 16203/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_RALF_fuzzer-5086088934195200
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit ccca484324e04dff4cb81d0f9018ae828e6b5c89)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=5a16b294ed91aa0aef42dcfd38677065002668e5
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sun Aug 4 17:10:18 2019 +0200

    avcodec/vorbisdec: Implement vr->classifications = 1
    
    It appears no valid file uses this, so this is not testable with
    a valid file.
    
    Fixes: assertion failure
    Fixes: 16187/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_VORBIS_fuzzer-5638880618872832
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 5a5f12e3b3f2177ede5839ff4141228666b8436f)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=8f14f0659539f34f41eaeaa4cddd6c6c37f6b38c
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sun Aug 4 12:28:55 2019 +0200

    avcodec/vorbisdec: Check parameters in vorbis_floor0_decode() before divide
    
    Fixes: division by zero
    Fixes: 16183/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_VORBIS_fuzzer-5688966782648320
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit aecc9b96d613f54d772e9475738bb54e0e1f182e)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=b7fcf8bf26a3421d6f753f5e762022fc11cb52e5
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sun Aug 4 12:21:51 2019 +0200

    avformat/realtextdec: Check for duplicate extradata in realtext_read_header()
    
    Fixes: memleak
    Fixes: 16140/clusterfuzz-testcase-minimized-ffmpeg_DEMUXER_fuzzer-5684008052064256
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 652ea23cb34bc59b38c0088865600e2b86079815)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=e7efe2aacfd5fdde4b3e7ec7bd9af1a577c6f0e1
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sun Aug 4 09:46:34 2019 +0200

    avcodec/apedec: Fix 2 signed overflows
    
    Fixes: left shift of 1073741824 by 1 places cannot be represented in type 'int'
    Fixes: signed integer overflow: 2049431315 + 262759074 cannot be represented in type 'int'
    Fixes: 16012/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_APE_fuzzer-5719016003338240
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 392c028cd23d128f33d93b2159eed5de42f72b4d)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=003bb6616c8b27033cfd5915b75bac8b63f5a55c
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sun Aug 4 09:33:45 2019 +0200

    avcodec/mss3: Check for the rac stream being invalid in rac_normalize()
    
    Fixes: out of array read
    Fixes: 15982/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_MSA1_fuzzer-5630676251967488
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 99a172f3f4d0bef024c6293f575caaaddce0b267)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=5d353f32c69cdbcd7d460a2e1937688a6cead998
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sun Aug 4 08:32:58 2019 +0200

    avcodec/vc1_block: Check get_vlc2() return before use
    
    Fixes: index -1 out of bounds for type 'const uint8_t [185][2]'
    Fixes: 15720/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_MSS2_fuzzer-5666071933091840
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 2cb1f797350875ec45cb20d59dc0684fcbac20fc)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=bf3520cd641d11f133c52f192ce7ec84119a685a
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sun Aug 4 08:26:40 2019 +0200

    avcodec/apedec: Do not partially clear data array
    
    Fixes: Assertion failure and memleak
    Fixes: 15709/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_APE_fuzzer-5182435093905408
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 8e4b522c9146b9c14579ae7381fb1043b7423578)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=d218b9e0671659fbb0f10fe2dc4e67fe6e94aaab
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Fri Aug 2 23:54:49 2019 +0200

    avcodec/hnm4video: Forward errors of decode_interframe_v4()
    
    Fixes: Timeout (108sec -> 160ms)
    Fixes: 15570/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_HNM4_VIDEO_fuzzer-5085482213441536
    
    Reviewed-by: Tomas Härdin <tjoppen at acc.umu.se>
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 9af8ce754b705c36ad4d2b6fd0f73f87ca4381c4)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=8b525ccd366ed6330249eb2e0b80d412b385e076
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Mon Jul 22 00:41:06 2019 +0200

    avcodec/vp3: Check that theora is theora
    
    Theora is forced to be non zero if it is zero and a sample
    is asked for, as suggested by reimar
    
    Fixes: Timeout (2min -> 600ms)
    Fixes: 15366/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_THEORA_fuzzer-5737849938247680
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit b4bf7226aff28e9ca379c5a3dedf745a2d316739)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=2dadc27de2b70b9d385e6e1e0f6103145ecdc055
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Wed Jul 10 23:27:19 2019 +0200

    avcodec/vc1_pred: Fix invalid shift in scaleforsame()
    
    Fixes: left shift of negative value -1
    Fixes: 15531/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_VC1IMAGE_fuzzer-5759556258365440
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 6dfda35dd29d2e2a86554d2c05d957a09ab79b0c)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=06ad82980087589f91cdfc03614b7319dd24613c
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Thu Jul 4 23:13:13 2019 +0200

    avcodec/vc1_block: Fix integer overflow in ff_vc1_pred_dc()
    
    Fixes: signed integer overflow: 32796 * 65536 cannot be represented in type 'int'
    Fixes: 15430/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_VC1IMAGE_fuzzer-5735424087031808
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit f31ed8f3b00ec7afe87092798bf0b397f6e19ed5)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=9ba145e243cbde7539263b8fcd79c52e06b33da7
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Mon Jul 8 23:00:09 2019 +0200

    avcodec/truemotion2: Fix several integer overflows in tm2_motion_block()
    
    Fixes: 15524/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_TRUEMOTION2_fuzzer-5173148372172800
    Fixes: signed integer overflow: 13701388 - -2134868270 cannot be represented in type 'int'
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 9a353ea8766206bd302f3f12ca1d226237542908)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=ef6ca6adff59a7fabf126ab0873963ce639eeb8e
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Tue Jul 2 12:13:19 2019 +0200

    avcodec/apedec: make left/right unsigned to avoid undefined behavior
    
    Fixes: signed integer overflow: 755176387 + 1515360583 cannot be represented in type 'int'
    Fixes: 15506/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_APE_fuzzer-5706859232624640
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit bf778af1493b0814696307432763246fb53c75e7)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=363dd60366e253b8d93d67b26dce30dfc8e04c0f
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sun Jun 16 11:39:15 2019 +0200

    avcodec/apedec: Fix multiple integer overflows and undefined behaviorin filter_3800()
    
    Fixes: left shift of negative value -4
    Fixes: signed integer overflow: -15091694 * 167 cannot be represented in type 'int'
    Fixes: signed integer overflow: 1898547155 + 453967445 cannot be represented in type 'int'
    Fixes: 15258/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_APE_fuzzer-5759095564402688
    Fixes: signed integer overflow: 962196438 * 31 cannot be represented in type 'int'
    Fixes: 15364/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_APE_fuzzer-5718799845687296
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 267eb2ab7f87696e1a156ca9a5ff1b1628d170c1)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=29fe37850af22e7a45a75932c16b5c1225079812
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Wed Jul 24 23:11:50 2019 +0200

    avformat/mpc: deallocate frames array on errors
    
    Fixes: memleak on error path
    Fixes: 15984/clusterfuzz-testcase-minimized-ffmpeg_DEMUXER_fuzzer-5679918412726272
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit da5039415c2bd625085d15e6c92e0b64eefddcbf)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=b4edee5cab63e1db7be93f9bb70cf3d62c83bcc2
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sun Jul 28 22:29:57 2019 +0200

    avcodec/eatqi: Check for minimum frame size
    
    The minimum header is 8 bytes, the smallest bitstream that is passed to
    the MB decode code is 4 bytes
    
    Fixes: Timeout (35sec -> 18sec)
    Fixes: 15800/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_EATQI_fuzzer-5684154517159936
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Reviewed-by: Paul B Mahol <onemda at gmail.com>
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 5ffb8e879389fb0642654e3233cfeca1f9841e52)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=2a43d9f882d83b4d71e37c7b50114f70380a0bcf
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sun Jul 28 21:09:14 2019 +0200

    avcodec/eatgv: Check remaining size after the keyframe header
    
    The minimal size which unpack() will not fail on is 5 bytes
    Fixes: Timeout (14sec -> 77ms) (testcase 15508)
    Fixes: 15508/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_EATGV_fuzzer-5700053513011200
    Fixes: 15996/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_EATGV_fuzzer-5751353223151616
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 009ec8dc3345353b1cd2316423918533fcb89552)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=a71f9aaf42c899c5e2bcf7b064d731ec9c2a006a
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Wed Jul 24 22:55:15 2019 +0200

    avcodec/assdec: undefined use of memcpy()
    
    Fixes: null pointer passed as argument 2, which is declared to never be null
    Fixes: 16008/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_SSA_fuzzer-5650582821404672 (this is a separate issue found in this testcase)
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Reviewed-by: Paul B Mahol <onemda at gmail.com>
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 47b6ca0b022a413e392707464f2423795aa89bfb)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=86549d839f8e5c1203639fcef41c3effefb1e9fd
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Fri Jul 26 14:16:16 2019 +0200

    avcodec/brenderpix: Check input size before allocating image
    
    An incomplete image is not supported prior to this and will
    not produce any output. This commit moves the failure before
    time consuming operations.
    
    Fixes: Timeout (81sec -> 76ms)
    Fixes: 15723/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_BRENDER_PIX_fuzzer-5147265653538816
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Reviewed-by: Paul B Mahol <onemda at gmail.com>
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 38b6c48c4300343f4703019a90a332773e64e11b)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=c88d2c4e2f7632f5695d0d24899e5aa9db842eea
Author: Matt Wolenetz <wolenetz at google.com>
Date:   Thu Jul 25 15:54:49 2019 -0700

    lafv/wavdec: Fail bext parsing on incomplete reads
    
    avio_read can successfully return even when less than the requested
    amount of input was read. wavdec's bext parsing mistakenly assumed a
    successful avio_read always read the full amount that was requested.
    The result could be dictionary tags populated with partially
    uninitialized values.
    
    This change also fixes a broken assertion in wav_parse_bext_string that
    was off-by-one, though no known current usage of that method hits that
    broken case.
    
    Chromium bug: 987270
    
    Signed-off-by: Matt Wolenetz <wolenetz at chromium.org>
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 052d41377a02f480f8e7135c0f7d418e9a405215)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=5088a3e2d3b1f94fedb4d880413b3e9a2dc9c5fb
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Thu Jul 4 23:39:23 2019 +0200

    avcodec/utils: fix leak of subtitle_header on error path
    
    Fixes: memleak
    Fixes: 15528/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_STL_fuzzer-5735993371525120
    Fixes: 15792/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_SAMI_fuzzer-5737754232619008
    Fixes: 16008/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_SSA_fuzzer-5650582821404672
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 923d5c489fd4ffd0b9dbfdc6c14f594bd134ab47)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=c3b7afa4e917d748f0c3f8237b04ebdd99bdcacb
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sun Jul 21 00:08:55 2019 +0200

    avcodec/utils: Check close before calling it
    
    Fixes: NULL pointer dereference
    Fixes: 15733/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_IDF_fuzzer-5658616977162240
    
    Reviewed-by: Paul B Mahol <onemda at gmail.com>
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 8df6884832ec413cf032dfaa45c23b1c7876670c)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=baa8bca4485734e4eba2b54563ff25ecfcba439b
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sun Jul 7 23:23:53 2019 +0200

    avcodec/vorbisdec: Check vlc for floor0 dec vector offset
    
    Fixes: out of array access
    Fixes: 15649/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_VORBIS_fuzzer-5729191309344768
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 99f95f39c6978f0d91e42b3bced126a98173dbef)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=8666a635fdb02bcc1d1fb390df04e92776d17803
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sun Jul 7 23:16:12 2019 +0200

    avcodec/vorbisdec: amplitude bits can be more than 25 bits
    
    Fixes: assertion failure, invalid shift
    Fixes: 15583/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_VORBIS_fuzzer-5640157484548096
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 308771a73870863d1b4f630234fbb5bc7aec8252)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=175def86b7d7765c1c64c635a7ba5ed1957dc718
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sun Jul 7 14:47:58 2019 +0200

    avutil/softfloat_ieee754: Fix odd bit position for exponent and sign in av_bits2sf_ieee754()
    
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 82e389d066923412dd945543418e8cb6c63d0997)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=1dcb1dd490f62141254f6ca32426b7c37df7f00a
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sun Jun 16 11:32:10 2019 +0200

    avcodec/apedec: Fix various integer overflows
    
    Fixes: signed integer overflow: -538976267 * 31 cannot be represented in type 'int'
    Fixes: left shift of 65312 by 16 places cannot be represented in type 'int'
    Fixes: 15255/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_APE_fuzzer-5718831688843264
    Fixes: 15547/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_APE_fuzzer-5691384901664768
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 240bf0e5960fca424e43b7ab1048897fdecabf26)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=91abbbda598e457a6b48778a43a7ca7f1f0f36ac
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sun Jun 16 10:54:13 2019 +0200

    avcodec/apedec: Fix multiple integer overflows in predictor_update_filter()
    
    Fixes: signed integer overflow: -829262115 + -1410750414 cannot be represented in type 'int'
    Fixes: 15251/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_APE_fuzzer-5651742252859392
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 0af08cb803844b9eba4ff3e552c26452ec6fa7d2)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=428dee1a0357203dab107f3769485013d886f9ad
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sun Jul 7 00:03:51 2019 +0200

    avcodec/alsdec: fix undefined shift in multiply()
    
    Fixes: left shift of negative value -6
    Fixes: 15564/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_ALS_fuzzer-5701655938465792
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit b880b3b236ddd00f85ea502b4c17a145fd26c790)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=71fd0201974023137bb74207846638fde5e4ed80
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sat Jul 6 23:20:30 2019 +0200

    avcodec/alsdec: Fix 2 integer overflows
    
    Fixes: signed integer overflow: 1270564968 + 904828220 cannot be represented in type 'int'
    Fixes: 15402/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_ALS_fuzzer-5755426823471104
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 9cd0d94f59d05e7bfaae9690e827752e7717eda3)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=b3d8b99a286a033524a4e3ec0c83fe0304f6d2d1
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Fri Jun 21 23:01:04 2019 +0200

    avcodec/flicvideo: Make line_packets int
    
    Fixes: signed integer overflow: -32768 * 196032 cannot be represented in type 'int'
    Fixes: 15300/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_FLIC_fuzzer-5733319519502336
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 54bd47f861e8cdc74aea816ebfbbaac25fefd0d1)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=03ea84792af1521c08db1db203f174e2b3a6dde1
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sat Jul 20 00:07:59 2019 +0200

    avcodec/dvbsubdec: Use ff_set_dimensions()
    
    Fixes: signed integer overflow: 65313 * 65313 cannot be represented in type 'int'
    Fixes: 15740/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_DVBSUB_fuzzer-5641749164195840
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Reviewed-by: Paul B Mahol <onemda at gmail.com>
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 5941b7f615b0c0cab0d8f8613b918de75d3c1222)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=2d86e41d450c00956cc2d3fcedcd00a9d41e1005
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Mon Jul 15 00:35:49 2019 +0200

    avcodec/ffwavesynth: Check if there is enough extradata before allocation
    
    Fixes: OOM
    Fixes: 15750/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_FFWAVESYNTH_fuzzer-5702090367696896
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Reviewed-by: Nicolas George <george at nsup.org>
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 65bac4a7825e1f2bbf4112569ffa363cc1fdbce5)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=6e1b07c0b29b532656dc42c0e6d5fbf426502610
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Mon Jul 15 00:35:48 2019 +0200

    avcodec/ffwavesynth: More correct cast in wavesynth_seek()
    
    Fixes: signed integer overflow: 553590816 - -9223372036315799520 cannot be represented in type 'long'
    Fixes: 15743/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_FFWAVESYNTH_fuzzer-5705835377852416
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Reviewed-by: Nicolas George <george at nsup.org>
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit f4605770af712dd9d7b0136fe298f8aa52101011)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=68ee6f4d8b75bd535257ff601229b8fb70f47680
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Mon Jul 15 00:35:47 2019 +0200

    avcodec/ffwavesynth: Check sample rate before use
    
    Fixes: division by zero
    Fixes: 15725/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_FFWAVESYNTH_fuzzer-5641231956180992
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Reviewed-by: Nicolas George <george at nsup.org>
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit c95857a4237d7a0c55378a44f51d2d809f3bc8f5)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=190b92359bb2b2d259b57655d56087a88b14c27e
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sat Jul 6 11:51:09 2019 +0200

    avcodec/dnxhd_parser: Fix parser when input does not have nicely sized packets
    
    Fixes: out of array access
    Fixes: 15522/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_DNXHD_fuzzer-5747756078989312
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 2d900d8fe0aaf9c984e024956eb537ecdfe2c949)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=6118362864af889a30bfcff3b0a5a929ca4cd713
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sat Jul 6 09:51:46 2019 +0200

    avcodec/dnxhd_parser: remove unneeded code
    
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 1707dbdf49b22021b0845482806b881093534f2f)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=774d23af2ffefe6ce598ef906d3c76ddaa6f4f4e
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Thu Jul 4 23:01:19 2019 +0200

    avformat/utils: Check rfps_duration_sum for overflow
    
    Fixes: signed integer overflow: 9151595917793558550 + 297519050751678697 cannot be represented in type 'long'
    Fixes: 15496/clusterfuzz-testcase-minimized-ffmpeg_DEMUXER_fuzzer-5722866475073536
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 5c46fdf305caac8bf2f270e69e60ae3d614df468)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=12dfbefda254180ed2f1ce6795380458c446bd54
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sun Jun 30 22:19:22 2019 +0200

    avcodec/h264_refs: Also check reference in ff_h264_build_ref_list()
    
    Fixes: out of array read
    Fixes: 15409/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_H264_fuzzer-5758846959616000
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 7d3581e6bbec309ca0cc617c37cf6e87547764ef)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=5bcced7beaedaa89996e7c73cb92dbc63b9341f3
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sat Jul 6 09:21:52 2019 +0200

    avcodec/parser: Check next index validity in ff_combine_frame()
    
    Fixes: out of array access
    Fixes: 15522/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_DNXHD_fuzzer-5747756078989312
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 15008db0fac6d97bb939fa7ef9e92d79bf1f7cb1)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=c2507e1946d345ca6e8cb63624c8509f7b63bd31
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Tue Jul 2 19:57:08 2019 +0200

    avcodec/ivi: Ask for samples with odd tiles
    
    Fixes: Assertion failure
    Fixes: 15422/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_INDEO5_fuzzer-5676625481433088
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit a7e02cf3ad6f6eaae07fa68ecb93014e1dfd224e)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=cda23a57cc1e882ffae8b1a09a9e6c96b5451c5c
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sat Jul 13 20:12:41 2019 +0200

    avformat/xmv: Make bitrate 64bit
    
    Fixes: signed integer overflow: 32 * 538976288 cannot be represented in type 'int'
    Fixes: 15633/clusterfuzz-testcase-minimized-ffmpeg_DEMUXER_fuzzer-5752273981931520
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Reviewed-by: Paul B Mahol <onemda at gmail.com>
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 39a6a79bcbe3c2d239ed207a34c5fb3ca7bfdaf0)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=0af60924ea506457dc82e95b012d4c57824d07fe
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Wed Jul 10 23:02:36 2019 +0200

    avcodec/pngdec: Check that previous_picture has same w/h/format
    
    Fixes: out of array access
    Fixes: 15540/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_APNG_fuzzer-5684905029140480
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Reviewed-by: Paul B Mahol <onemda at gmail.com>
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 18c808ffbed81ea580fe6ddd6524dd7bea3f8d0e)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=2b0180f80b1eb791850a8667128f84fdf011c0d1
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Wed Jul 3 23:25:07 2019 +0200

    avcodec/huffyuv: remove gray8a (the format is listed but not supported by the implementation)
    
    Fixes: null pointer dereference
    Fixes: 15464/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_HYMT_fuzzer-5681391150301184
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Reviewed-by: Paul B Mahol <onemda at gmail.com>
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 6aaa01afe4fb774d0767684aa00f075b0ee5fca6)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=db136657d425425c019ef7dec1918ff028b03c0e
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Thu Jul 11 20:02:24 2019 +0200

    avcodec/mpc8: Fixes invalid shift in mpc8_decode_frame()
    
    Fixes: left shift of negative value -456
    Fixes: 15561/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_MPC8_fuzzer-5758130404720640
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Suggested-by: James Almer <jamrial at gmail.com>
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 1dbb67d39b21ed320edd2b1599b502518250cfd3)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=7a026998b07ebfbf419d64106be11d9486312c91
Author: James Zern <jzern at google.com>
Date:   Tue Jul 9 19:03:58 2019 -0700

    avcodec/utils, avcodec_open2: close codec on failure
    
    after a successful init if the function fails for another reason close
    the codec without requiring FF_CODEC_CAP_INIT_CLEANUP which is meant to
    cover init failures themselves. fixes a memory leak in those cases.
    
    BUG=oss-fuzz:15529
    
    Signed-off-by: James Zern <jzern at google.com>
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit b1febda061955c6f4bfbc1a75918b5e75e7d7f80)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=49b4d41ec1b33214aac0f3e51c0ca177e3dfeb37
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sun Jun 30 17:54:45 2019 +0200

    avcodec/golomb: Correct the doxy about get_ue_golomb() and errors
    
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 1bb3b3f11c6960e90bcfe685c0ad1e355a3e787e)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=bcc19ab7b7d14b7087602bb8e7944035d9493f9a
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sat Jun 29 23:23:25 2019 +0200

    avformat/utils: Check timebase before use in estimate_timings()
    
    Fixes: division by 0
    Fixes: 15480/clusterfuzz-testcase-minimized-ffmpeg_DEMUXER_fuzzer-5746727434321920
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit f57e97dfd9539bc3f4f97a76ebc001f0b055cb88)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=f09573400521fb5e966d62cc498d904d198296e2
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sat Jun 29 21:53:09 2019 +0200

    avcodec/hq_hqa: Use ff_set_dimensions()
    
    Fixes: 15530/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_HQ_HQA_fuzzer-5637370344374272
    Fixes: signed integer overflow: 65312 * 65312 cannot be represented in type 'int'
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit a6229fcd405d4135848c83df73634871260de59c)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=99c45c0c82a6e22f1e8caa6bfc08bb655dcf9e42
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Fri Jun 28 19:20:43 2019 +0200

    avcodec/rv10: Fix integer overflow in aspect ratio compare
    
    Fixes: signed integer overflow: 2040 * 1187872 cannot be represented in type 'int'
    Fixes: 15368/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_RV20_fuzzer-5681657136283648
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 14fcf42958608223a0be6558fb6e323419c9fc27)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=a7acecb0d9e3c96930c284f36205e30100894788
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Thu Jun 27 00:15:03 2019 +0200

    avcodec/4xm: Fix signed integer overflows in idct()
    
    Fixes: signed integer overflow: 20242 * 121095 cannot be represented in type 'int'
    Fixes: 15310/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_FOURXM_fuzzer-5737051745419264
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 2bbea155bf7c6ce6d5ae53cc41e44798cad2f39c)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=c698d9e46b3a1b65225f07555f19393b34c12d59
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Mon Jun 24 01:01:04 2019 +0200

    avcodec/qdm2: Check checksum_size for 0
    
    Fixes: Infinite loop
    Fixes: 15337/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_QDM2_fuzzer-5757428949319680
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 7b2ebf89a411d957ca999f1e7a919ff617fbfd56)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=a85e0a0b8dd34908eb0532c1f7534d7bb2f7c25d
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Mon Jun 24 01:01:03 2019 +0200

    avcodec/qdm2: error out of qdm2_fft_decode_tones() before entering endless loop
    
    Fixes: signed integer overflow: 2147483646 + 2 cannot be represented in type 'int'
    Fixes: infinite loop
    Fixes: 15396/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_QDM2_fuzzer-5116605501014016
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 694be24bd6c4cc9c62222f4583260bf79056e4c1)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=32902cc9883b82cd625041bf81df47bd54f6304c
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Mon Jun 24 01:01:02 2019 +0200

    avcodec/qdm2: Do not read out of array in fix_coding_method_array()
    
    Instead we ask for a sample, its unclear what to do in this case.
    
    Fixes: index 30 out of bounds for type 'int8_t [30][64]'
    Fixes: 15339/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_QDM2_fuzzer-5749441484554240
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit ae021c1239ec3bc0a30dc5a4720569071599ece4)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=388d36101ba5a393db634f4c5dc55d93c6658f12
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Tue Jun 25 23:42:43 2019 +0200

    avcodec/svq3: Use ff_set_dimension()
    
    Fixes: OOM
    Fixes: 15410/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_SVQ3_fuzzer-5659464805384192
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 7b114d76878f1a542bcb75456492cc43e6414f8b)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=d0651f24baf90ac6ce29bdea085102efab96b66e
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sat Jun 22 19:21:50 2019 +0200

    avcodec/iff: Check ham vs bpp
    
    This checks the ham value much stricter and avoids hitting cases which cannot be reached
    with data from the libavformat demuxer.
    
    Fixes: out of array access
    Fixes: 15320/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_IFF_ILBM_fuzzer-5080476840099840
    Fixes: 15423/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_IFF_ILBM_fuzzer-5630765833912320
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit f76d7352e05526fde7c607b9a9db536a5760af29)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=69a7633a76f0217c130740ce130bb714f957d979
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Fri Jun 21 22:43:23 2019 +0200

    avcodec/ffwavesynth: use uint32_t to compute difference, it is enough
    
    Fixes: signed integer overflow: 6494225984479297536 - -6043795377581187040 cannot be represented in type 'long'
    Fixes: 15285/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_FFWAVESYNTH_fuzzer-5632780307791872
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit e9dd3c7126097d7c8d4f137db9957b81a219aa2c)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=6e050fc931033a7148b7482d42278c807b05a69e
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Fri Jun 21 22:41:25 2019 +0200

    avcodec/ffwavesynth: Simplify lcg_seek(), avoid negative case
    
    Fixes: negation of -9223372036854775808 cannot be represented in type 'int64_t' (aka 'long'); cast to an unsigned type to negate this value to itself
    Fixes: 15289/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_FFWAVESYNTH_fuzzer-5709034499342336
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 8c022099351c04ae21e0b8696ea71a690ed03cd2)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=98e712bd1c7dc0bfe7e99d1688b995d03ff83051
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Fri Jun 21 22:08:27 2019 +0200

    avcodec/ffwavesynth: Fix backward lcg_seek()
    
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit cf2bd3ce79b12256d7d129b2ada5ee649b9a27eb)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=eb7a4a27c47439b52b93f0bcab669fc4e654ad71
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Fri Jun 21 23:45:36 2019 +0200

    avcodec/flicvideo: Fix off by 1 error in flic_decode_frame_24BPP()
    
    Fixes: out of array access
    Fixes: 15360/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_FLIC_fuzzer-5653837190266880
    Fixes: 15412/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_FLIC_fuzzer-5740537648250880
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 37708cbae8d6887b80f58a70a1dfa01af6ea2c85)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=8548434337b22aa0530c2b32af14dcd0dc2e2c80
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sat Jun 15 23:28:25 2019 +0200

    avcodec/vc1_block: Check for vlc error in vc1_decode_ac_coeff()
    
    Fixes: index -1 out of bounds for type 'const uint8_t [185][2]'
    Fixes: 15250/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_WMV3IMAGE_fuzzer-5648992869810176
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 79204a1fc8f1988f7d7e6cae2c3b68f513444d38)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=ea7aadd74aef432345e93863da3a097ffe8c1ca1
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Wed Jun 19 01:04:07 2019 +0200

    avcodec/alac: Check lpc_quant
    
    lpc_quant of 0 produces undefined behavior, thus disallow this.
    If valid samples use this then such a sample would be quite
    usefull to confirm the correct&lossles handling of this.
    
    Fixes: libavcodec/alac.c:218:25: runtime error: shift exponent -1 is negative
    Fixes: 15273/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_ALAC_fuzzer-5656388535058432
    Fixes: 15276/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_ALAC_fuzzer-5761238417539072
    Fixes: 15315/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_ALAC_fuzzer-5767260766994432
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit a6474b899c1153e3bb95e399b6605c3507aea0d0)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=5190d3a2f74885fa65ad3a16da7e56968a25a501
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Fri Jun 21 00:47:19 2019 +0200

    avcodec/alsdec: Add FF_CODEC_CAP_INIT_CLEANUP
    
    Fixes: multiple memleaks
    Fixes: 15293/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_ALS_fuzzer-5642409288925184
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit b7b6ddd59693008c35b3247496ecc946331d0856)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=4852df4a21ecf3319ed8742b833f1f8408defa97
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Fri Jun 21 00:47:17 2019 +0200

    avcodec/alsdec: Fix integer overflow with buffer number
    
    Fixes: signed integer overflow: 65313 * 65313 cannot be represented in type 'int'
    Fixes: 15290/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_ALS_fuzzer-5738074249625600
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 5f64f6058e0c23641a68ce7dfe47b1f55efd401c)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=3e491e9c59a79d4cb3db4bedf66f3b7124c8c644
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Fri Jun 21 00:47:16 2019 +0200

    avcodec/alsdec: Fixes signed integer overflow in LSB addition
    
    Fixes: signed integer overflow: 8 * 536870912 cannot be represented in type 'int'
    Fixes: 15281/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_ALS_fuzzer-5744458785619968
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 7f527021df73b4792323f38f84a4bf2fbe5a2052)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=36c278078d7538fd8c1913fa979d78c61b1d8741
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Fri Jun 21 00:47:15 2019 +0200

    avcodec/alsdec: Check opt_order / sb_length in ra_block handling
    
    Fixes: out of array access
    Fixes: 15277/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_ALS_fuzzer-5184853437317120
    Fixes: 15280/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_ALS_fuzzer-5741062137577472
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 0794494c8f2f756e3c9384dba21c54f7d4ba9286)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=49cb2d44a45fceff1c7628ceab99c00b880480b0
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Wed Jun 19 23:27:21 2019 +0200

    avcodec/alsdec: Fix integer overflow with shifting samples
    
    Fixes: signed integer overflow: -346039050 * 8 cannot be represented in type 'int'
    Fixes: 15283/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_ALS_fuzzer-5692700268953600
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit a3bd4b260eb9f0d5817f9b3d672844f127c51a0b)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=1ebd25b1f1fb16e32e0509c2ab4cf92eca1303e1
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Wed Jun 19 23:17:31 2019 +0200

    avcodec/alsdec: Fix undefined behavior in decode_rice()
    
    Fixes: left shift of 72 by 26 places cannot be represented in type 'int'
    Fixes: 15279/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_ALS_fuzzer-5700665621348352
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 51f6870c37cc29e1ea7e0c66df2fe505938b7561)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=5f5766691dbb2a80bd0a2ca3bf38845379793faa
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Wed Jun 19 21:53:43 2019 +0200

    avcodec/alsdec: Fixes invalid shifts in read_var_block_data() and INTERLEAVE_OUTPUT()
    
    Fixes: left shift of negative value -6
    Fixes: 15275/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_ALS_fuzzer-5742361767837696
    Fixes: signed integer overflow: 41582592 * 256 cannot be represented in type 'int'
    Fixes: 15296/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_ALS_fuzzer-5739558227935232
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit e131568752ad41222946304c61eadb87b0a24791)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=ec9a2cb48b957bd8368c62d027da09267044945f
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Tue Jun 25 10:29:57 2019 +0200

    avcodec/hevc_ps: Change num_tile_rows/columns checks to sps->ctb_height/weight
    
    Suggested-by: James Almer <jamrial at gmail.com>
    Reviewed-by: James Almer <jamrial at gmail.com
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 3b2082c663dac93fd722289a540c1b1e24a12564)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=3bdd16fd68c32b13fc0e24e68af3fa4ce3d5df85
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Thu Jun 13 15:05:54 2019 +0200

    avcodec/hevc_ps: Fix integer overflow with num_tile_rows and num_tile_columns
    
    Fixes: signed integer overflow: -2147483648 - 1 cannot be represented in type 'int'
    Fixes: 14880/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_HEVC_fuzzer-5130977304641536
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Reviewed-by: James Almer <jamrial at gmail.com>
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit c692051252693155c4eecd16f4f8a79caf66cd54)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=9a7d3304ff40bc5c93f92aaa375d4177672b8b5e
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sun Jun 16 11:26:57 2019 +0200

    avcodec/apedec: Add k < 24 check to the only k++ case which lacks such a check
    
    Fixes: 15255/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_APE_fuzzer-5718831688843264
    Fixes: left shift of 1 by 31 places cannot be represented in type 'int'
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 3d4f4f4a15e79c96c3613e5c252b2f5cc4190e18)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=241f59eb8b4ab078a5d6642edd27b60019c03d8c
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sun Jun 9 22:04:16 2019 +0200

    avformat/aviobuf: Delay buffer downsizing until asserts are met
    
    Fixes: Assertion failure
    Fixes: 15151/clusterfuzz-testcase-minimized-ffmpeg_DEMUXER_fuzzer-5757079496687616
    Fixes: 15205/clusterfuzz-testcase-minimized-ffmpeg_DEMUXER_fuzzer-5767573242642432
    May fix: Ticket7094
    
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 0334632d5c02720f1829d59cd20c009584b5b163)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=6aaca5234dd299568bd2acd03d27a22ab731b0b5
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Thu Jun 13 00:24:53 2019 +0200

    avcodec/fitsdec: Check data_min/max
    
    Fixes: division by 0
    Fixes: 15206/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_FITS_fuzzer-5657260212092928
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit eb82d19f035f59edf0aee215f02baaea908875de)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=80bbb8b85107370ca687edd212736dc41fc52d35
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Mon Jun 17 21:13:17 2019 +0200

    avcodec/m101: Fix off be 2 error
    
    Fixes: out of array read
    Fixes: 15263/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_M101_fuzzer-5728999453491200
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 89b96900fa7c17d0770c9af26af7c3ae36ae0253)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=d84f4c0c25ea09e383d9f09051ed4927e4b19eec
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Mon Jun 17 20:58:47 2019 +0200

    avcodec/qdm2: Move fft_order check up
    
    This avoids undefined computations with unchecked values
    
    Fixes: shift exponent -21 is negative
    Fixes: 15262/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_QDM2_fuzzer-5651261753393152
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 8d8b8c4ac6fb5b5d40bd131f2d2ea9d85b8759a6)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=9856f1f6155170567232d43cfbcb16ab5f34d813
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Mon Jun 17 21:26:45 2019 +0200

    avcodec/libvorbisdec: Check extradata size
    
    Fixes: out of array read
    Fixes: 15261/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_LIBVORBIS_fuzzer-5764908467093504
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit cf3c245566e8a8d45ed2ad9fdff9ef50327ba2d3)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=93baaaaa8c65971811349612c8ff390a626bef3a
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Tue Jun 18 23:17:23 2019 +0200

    avformat/vqf: Check header_size
    
    Fixes: 15271/clusterfuzz-testcase-minimized-ffmpeg_DEMUXER_fuzzer-5735262606327808
    Fixes: signed integer overflow: -2147483648 - 8 cannot be represented in type 'int'
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 7c30ff38880570377168096417f714b21102b343)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=ec2b12fa05cbd2aca03cafa723504f9ab7156add
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Tue Jun 18 23:55:56 2019 +0200

    avcodec/utils: Check bits_per_coded_sample
    
    This avoids the need for each decoder separately having to handle this case
    
    Fixes: shift exponent -100663046 is negative
    Fixes: out of array access
    Fixes: 15270/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_IFF_ILBM_fuzzer-5727829913763840
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit d33414d2ad27a5d2193c9ab0948ba7a282c2f910)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=f1400191c600f992c6cbab933a9dba7e3cedccde
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sat Jun 15 00:47:06 2019 +0200

    avcodec/videodsp_template: Fix overflow of addition
    
    Fixes: addition of unsigned offset to 0x7f56fc26a9b6 overflowed to 0x7f56fc26a8be*
    Fixes: clusterfuzz-testcase-minimized-mediasource_MP4_AVC1_pipeline_integration_fuzzer-4917949056679936
    
    Reported-by: Matt Wolenetz <wolenetz at google.com>
    Reviewed-by: Matt Wolenetz <wolenetz at google.com>
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 247a1de7f7d9c5628cf188e677d10ce9e12bd2f2)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=55fca6e6e5ec63565ecce4d3447ccd814aced9b5
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Thu Jun 20 19:09:11 2019 +0200

    avcodec/alsdec: Fix invalid shift in multiply()
    
    Fixes: shift exponent -24 is negative
    Fixes: 15292/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_ALS_fuzzer-5768533318828032
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit f30be1ec9856551d96f3876eec5f8b8abf456b81)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=fb81fd52d35565439592cd616c5680601a137cf9
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sun Jun 16 16:12:42 2019 +0200

    avcodec/ffwavesynth: Check ts_end - ts_start for overflow
    
    Fixes: signed integer overflow: 2314885530818453536 - -8926099139098304480 cannot be represented in type 'long'
    Fixes: 15259/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_FFWAVESYNTH_fuzzer-5764366093254656
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 2db7a3bc4acdd293ed10b71e55f16a45ca28b629)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=0409e5fe361cc8dc9c4150012cd9b67ed60499d2
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sun Jun 16 16:17:12 2019 +0200

    avcodec/vc1dsp: Avoid undefined shifts in vc1_v_s_overlap_c / vc1_h_s_overlap_c
    
    Fixes: left shift of negative value -13
    Fixes: 15260/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_VC1_fuzzer-5702076048343040
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 507ca66ee41aa8a95b75654163f77af0a99a25b1)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=5a49cad78aa6920a166f057e74d7ffa219cb0781
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sun Jun 16 15:55:55 2019 +0200

    avcodec/tta: Fix undefined shift
    
    Fixes: left shift of negative value -4483
    Fixes: 15256/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_TTA_fuzzer-5738691617619968
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit ebccd2f778a861b41ad38a8464ea120d4f16b2d7)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=7887aa79de9c78ff56934ce4ece2df74b75f718a
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sun Jun 16 15:53:27 2019 +0200

    avcodec/qdmc: Fix integer overflows in PRNG
    
    Fixes: signed integer overflow: 214013 * 2531011 cannot be represented in type 'int'
    Fixes: 15254/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_QDMC_fuzzer-5698137026461696
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 2921b45a388a81968d946996bb32e72d7bb5d5b7)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=6aa01c06252a225073e7275aca0bd0b5f4db740a
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sun Jun 16 16:01:45 2019 +0200

    avcodec/bintext: Check font height
    
    Fixes: division by zero
    Fixes: 15257/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_BINTEXT_fuzzer-5757352881422336
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit bfb58bdd7015a6df2d130c92cf284d6a2362f3df)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=00d5a4703925c4b3c8a3c5df73f984e6c4b9d3f4
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Tue Jun 18 14:28:17 2019 +0200

    avcodec/binkdsp: Fix integer overflows in idct
    
    Fixes: signed integer overflow: 3784 * 682038 cannot be represented in type 'int'
    Fixes: 15265/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_BINK_fuzzer-5088311799971840
    Fixes: 15268/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_BINK_fuzzer-5666502344179712
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Reviewed-by: Reviewed-by: Peter Ross <pross at xvid.org>
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 7a072fbcc4c6f8ddbf37b131c2d141589118abcd)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=ed92170916cab316ae22e06cde6a47d0f8bf4d0a
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sat Jun 15 21:08:31 2019 +0200

    avcodec/motionpixels: Check for vlc error in mp_get_vlc()
    
    Fixes: 15246/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_MOTIONPIXELS_fuzzer-5168534407086080
    Fixes: runtime error: index -1 out of bounds for type 'HuffCode [16]'
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 930cdef80ab695132d3de2128c3c23f2d698918b)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=65326b27b615163cb1d68b6673dcd924aa3b0d23
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sat Jun 15 21:47:16 2019 +0200

    avcodec/loco: Limit lossy parameter so it is sane and does not overflow
    
    Fixes: 15248/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_LOCO_fuzzer-5087440458481664
    Fixes: signed integer overflow: 3 + 2147483647 cannot be represented in type 'int'
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit ce3b0b9066b433564ed3ee3eed3a1e8f2c0834a1)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=a77473d040d6cd6246146082fcb4810e142867e5
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sat Jun 15 00:12:36 2019 +0200

    avformat/mov: Set fragment.found_tfhd only after TFHD has been parsed
    
    Fixes: Assertion failure
    Fixes: crbug971646.mp4
    
    Reported-by: Matt Wolenetz <wolenetz at google.com>
    Reviewed-by: Matt Wolenetz <wolenetz at google.com>
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 696312c487d9d8c49a087017a829d1cdcbd68651)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=eca9b4022b0fcffe521abab45ef5102d9a837687
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Wed Jun 12 20:13:34 2019 +0200

    avcodec/xpmdec: Do not use context dimensions as temporary variables
    
    Fixes: Integer overflow
    Fixes: 15134/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_XPM_fuzzer-5722635939348480
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 5ea7f2050050fd6a9177a9b618f2bb2d4add9230)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=91348aa5ba6b24aa2f15646cf9b3946bcf075315
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Thu Jun 13 16:08:03 2019 +0200

    avcodec/fitsdec: Fix division by 0 in size check
    
    Fixes: division by zero
    Fixes: 15210/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_FITS_fuzzer-5746033243455488
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 07ffe94c172041cfb03109b9bb6b8bf577332bda)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=36f8bb1261e3a1ef6213d7a5a41742420e11c6da
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Thu Jun 13 15:00:14 2019 +0200

    avcodec/aacpsdsp_template: Fix integer overflow in ps_hybrid_analysis_c()
    
    Fixes: signed integer overflow: -1539565182 + -798086761 cannot be represented in type 'int'
    Fixes: 14807/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_AAC_FIXED_fuzzer-564925382682214
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit f8f5668df590d853429586e1f95cbd9cee38920e)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=7ca17d973b14ccd0fb2502ee1bd81be76e8430f0
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Thu Jun 13 19:45:50 2019 +0200

    avcodec/truemotion2: Fix integer overflow in last loop in tm2_update_block()
    
    Fixes: signed integer overflow: -1727985666 - 538976288 cannot be represented in type 'int'
    Fixes: 15031/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_TRUEMOTION2_fuzzer-5100228035739648
    
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 3aecd0170413c7e56f19de4e34d093a2c4027c2a)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=d88be9bc678619604d916a5d6db8c13ccf9bec1a
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sat Jun 22 21:17:52 2019 +0200

    avcodec/iff: finetune the palette size check in the mask case
    
    Fixes: out of array access
    Fixes: 15381/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_IFF_ILBM_fuzzer-5668057826983936
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Reviewed-by: Peter Ross <pross at xvid.org>
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 0f9789c8e37eb6d166729e876729beb21b7d5647)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=67ad2f201c42df2b5ac7f52c26bc10e80c4c1316
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sat Jun 22 20:05:15 2019 +0200

    avcodec/iff: Fix mask_buf / mask_palbuf leak
    
    Fixes: 15372/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_IFF_ILBM_fuzzer-5708881759567872
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Reviewed-by: Peter Ross <pross at xvid.org>
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 92e8db532cdee3c73913174413428ffdc35032e2)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=1246e38511f685473812f838001a6bdf8a8cc9ab
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sat Jun 8 10:48:41 2019 +0200

    avformat/icodec: Free ico->images on error paths
    
    Fixes: 15116/clusterfuzz-testcase-minimized-ffmpeg_DEMUXER_fuzzer-5715173567889408
    Fixes: memleak
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 54918b51161610a364de697b80acb9583eecf41b)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=25d3ae96972f8760182ff84d4117084dff54579a
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sat Jun 8 09:27:49 2019 +0200

    avformat/wsddec: Fix undefined shift
    
    Fixes: left shift of 1 by 31 places cannot be represented in type 'int'
    Fixes: 15123/clusterfuzz-testcase-minimized-ffmpeg_DEMUXER_fuzzer-5738039235575808
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 112eb17a2bbf6d02f81fdf0743b353a6b010aedc)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=30047c052d9d5591f69c8170763e80b5d4a2349b
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sun Jun 2 23:16:40 2019 +0200

    avcodec/fmvc: Check if header fields are available before allocating the image
    
    Fixes: Timeout (15sec -> 0.5sec)
    Fixes: 14846/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_FMVC_fuzzer-5068322120400896
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Reviewed-by: Paul B Mahol <onemda at gmail.com>
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 561cc161ca617c1b8d48fef0f02d56c0f1af0486)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=039c7d21f6988983580cbe22003a9b8ab75f6580
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sat Jun 15 21:52:24 2019 +0200

    avcodec/bink: Reorder operations in init to avoid memleak on error
    
    Fixes: Direct leak of 536 byte(s) in 1 object(s)
    Fixes: 15266/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_BINK_fuzzer-5629530426834944
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Reviewed-by: Peter Ross <pross at xvid.org>
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 2603f25d326476a83f5d093b522590b05b6e703b)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=a8ff09d7b7cda944b8cf5641ae30c5fa041bbfc0
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Thu Jun 13 01:20:19 2019 +0200

    avformat/wtvdec: Avoid (32bit signed) sectors
    
    Fixes: left shift of negative value -14614752
    Fixes: 15174/clusterfuzz-testcase-minimized-ffmpeg_DEMUXER_fuzzer-5670543606415360
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Reviewed-by: Peter Ross <pross at xvid.org>
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit dd357d76e5faf3ce6fc46ffb924cf30f1cb54af9)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=c8f7f583c073f3ad9b95b7b63b1805f443a5b751
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Wed Jun 5 12:18:54 2019 +0200

    avcodec/bitstream: Check for more conflicting codes in build_table()
    
    Fixes: out of array read
    Fixes: 14563/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_AGM_fuzzer-5646451545210880
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit a7e3b271fc9a91c5d2e4df32e70e525c15c6d3ef)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=8d2d04569a054bce1f10244e9913089156c44681
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Wed Jun 5 12:18:54 2019 +0200

    avcodec/bitstream: Check for integer code truncation in build_table()
    
    Fixes: out of array read
    Fixes: 14563/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_AGM_fuzzer-5646451545210880
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit e78b0f83748f92ea9e93b21c36082e0dd04d7cb1)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=5b4ceb45e3eae7f4f8a57369c35fee2400140bf1
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Thu Jun 6 23:20:49 2019 +0200

    avformat/sbgdec: Fixes integer overflow in str_to_time() with hours
    
    Fixes: signed integer overflow: 904444 * 3600 cannot be represented in type 'int'
    Fixes: 15113/clusterfuzz-testcase-minimized-ffmpeg_DEMUXER_fuzzer-5764083346833408
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 2a0f23b9d647ad84e0351b43ca4b552add00c8dc)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=62c408412f02e15514f216b34ee6b048f95928b7
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Thu Jun 6 23:17:18 2019 +0200

    avformat/vpk: Check offset for validity
    
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit aa003019ab9ec5ef7e7b3ff9d6262d3472b427eb)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=d14dd61a3d49cd8d96ff24b03906e24651899a08
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Thu Jun 6 23:14:13 2019 +0200

    avformat/vpk: Fix integer overflow in samples_per_block computation
    
    Fixes: signed integer overflow: 84026453 * 28 cannot be represented in type 'int'
    Fixes: 15111/clusterfuzz-testcase-minimized-ffmpeg_DEMUXER_fuzzer-5675630072430592
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 8c6c4129b4cc3b9e0b3a527a5a15c904ec6ae3b6)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=b8bb86efe7e1f107f2001e1aea3c5839c5dcaa58
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sat Jun 1 19:06:07 2019 +0200

    avcodec/mjpegdec: Check for non ls PAL8
    
    Fixes: Null-dereference READ in av_malloc
    Fixes: 15002/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_THP_fuzzer-5643474625363968
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 442375fee7f1fb15e42fbc128dc38bdfcc2cc105)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=84b444aa781a6c69947354cde0146e943888e242
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sun May 26 23:18:34 2019 +0200

    avcodec/interplayvideo: check decoding_map_size with video_data_size
    
    Fixes: Timeout (90543 ms -> 59 ms)
    Fixes: 14721/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_INTERPLAY_VIDEO_fuzzer-5697492148027392
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 914d6a7c1a7a1850b4053847a784b174c9146c55)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=a2927d38cb1fe9deeb6fde106758325e35d0055d
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Thu May 23 23:17:35 2019 +0200

    avcodec/h264_parse: Use 64bit for expectedpoc and expected_delta_per_poc_cycle
    
    Fixes: signed integer overflow: -2142516591 + -267814575 cannot be represented in type 'int'
    Fixes: 14450/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_H264_fuzzer-5716105319940096
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Reviewed-by: James Almer <jamrial at gmail.com>
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 4896fa18add7636ea9986edde51493331f1fb01e)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=ac7d8767239f26eb47c4f8ec3847631e74b5f727
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Tue May 14 14:29:43 2019 +0200

    avcodec/mss4: Check input size against skip bits
    
    Fixes: Timeout (17sec -> 20ms)
    Fixes: 14615/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_MTS2_fuzzer-5093007763701760
    Fixes: 14797/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_MTS2_fuzzer-5651696119709696
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 0fef412dffb74fef3494f7fae0c138c32a444484)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=ddf153b139dde63690c26868c7b9d924be73a08f
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Wed May 22 02:01:33 2019 +0200

    avcodec/diracdec: Fix integer overflow in global_mv()
    
    Fixes: signed integer overflow: 16384 * 196607 cannot be represented in type 'int'
    Fixes: 14810/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_DIRAC_fuzzer-5091232683917312
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit a99ffb5bb4454c625748972d9389cfaa5433a342)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=14a62019bbbd122d396acc593ba1cf1b1f1a7ec0
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Fri May 17 23:28:49 2019 +0200

    avcodec/vmnc: Check available space against chunks before reget_buffer()
    
    Fixes: Timeout (16sec -> 60ms)
    Fixes: 14673/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_VMNC_fuzzer-5640217517621248
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 279d9a84af37cc1a7cf79c1cd667105eeb948611)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=5866e20b01bc85e73886545d8d7bd3b212e3863d
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sat May 18 10:37:26 2019 +0200

    avcodec/aacdec_template: skip apply_tns() if max_sfb is 0 (from previous header decode failure)
    
    Fixes: NULL pointer dereference
    Fixes: 14723/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_AAC_LATM_fuzzer-5654612436058112
    Fixes: 14724/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_AAC_LATM_fuzzer-5712607111020544
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit cf3156e762bbd3fbaf9da53f3ef1ea6d1bad2ec5)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=1dc80a7d4e3cd49e031e43af0701b65f0060f94f
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Thu May 16 12:00:18 2019 +0200

    avcodec/aacdec_fixed: Handle more extreem cases in noise_scale()
    
    Its unclear if these cases have any relevance in real files
    
    Fixes: shift exponent -2 is negative
    Fixes: 14489/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_AAC_FIXED_fuzzer-5681941631729664
    
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 3d14663f8345a84613b1ec041fd65e4a90057320)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=1b2691fe1a6bf8a51f27bec0769ce5b754e61d77
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Thu May 16 11:55:43 2019 +0200

    avcodec/aacdec_template: Merge 3 #ifs related to noise handling
    
    Fewer #if and fewer lines
    
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit bc33c99d56791fc26ccafb49512b59e38b99ca12)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=e575ac8d8463a356dfce9e2bde367edaa4bf75f6
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Thu May 16 11:03:59 2019 +0200

    avcodec/aacdec_fixed: ssign seems always -1 in noise_scale(), simplify
    
    (cherry picked from commit 3d5863d73915748013975cac8d2148c5fc3d01c3)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=20ecac12c9d82efd397a0aee8d8c76fe9bb9c665
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Tue May 14 12:12:29 2019 +0200

    avformat/mp3enc: Avoid SEEK_END as it is unsupported
    
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit bf3ee6a13053d37a0c5022a324624e89f0bce8c5)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=eec89990b5571a34f86251f01d0e3c77d38c67fa
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sun May 5 00:31:24 2019 +0200

    avcodec/truemotion2: Fix several integer overflows in tm2_update_block()
    
    Fixes: signed integer overflow: -1877966852 + -469491713 cannot be represented in type 'int'
    Fixes: 14561/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_TRUEMOTION2_fuzzer-5167608359288832
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 8eecf761a65baf4ce6f25c0a149819cc9414c0f0)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=e1ceb17ee357bc5cd31843793c0d1a0a3c030199
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Thu May 2 20:36:18 2019 +0200

    avformat/webm_chunk: Specify expected argument length of get_chunk_filename()
    
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 1a74b04737f08e2e11a02ada280407889f6cadb1)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=abb7d3f1d00aad2f2c7923b59f847064f7017e06
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Thu May 2 20:45:14 2019 +0200

    avformat/webm_chunk: Check header filename length
    
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 3b5b977c9f96e2c3803317ad75253801bc571791)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=0ecde06ee746ca3b785cd200e0af0485b03cf922
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sun May 19 17:42:04 2019 +0200

    avcodec/cpia: Check input size also against linesizes and EOL
    
    Fixes: Timeout (14sec -> 29ms)
    Fixes: 14733/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_CPIA_fuzzer-5707022445576192
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Reviewed-by: Carl Eugen Hoyos <ceffmpeg at gmail.com>
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 3c0bfa7d1a90a22d5fe8daa415cc689c111562f1)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=900c0ecaedfed4670cb5f8c4719988557ccbad39
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Mon May 13 12:50:38 2019 +0200

    swscale/tests/swscale: Lengthen pixfmt name buffer to 21 bytes
    
    Some formats use longer names than 12.
    
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 9d269301f017657c3ae2e95a411317640acd39a8)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=a0966c15b1747b93dd3b9da6d29b2b12dccf6733
Author: Adam Richter <adamrichter4 at gmail.com>
Date:   Sun May 12 05:03:25 2019 -0700

    libswcale: Fix possible string overflow in test.
    
    In libswcale/tests/swcale.c, the function fileTest() calls sscanf in
    an argument of "%12s" on character srcStr[] and dstStr[], which are
    only 12 bytes.  So, if the input string is 12 characters, a
    terminating null byte can be written past the end of these arrays.
    
    This bug was found by cppcheck.
    
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit b8ed4930618b170de57a9086e1e9892216454684)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=9f8d2716a6419bd622d394961214303ae4667d85
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sat May 11 23:05:47 2019 +0200

    avcodec/hq_hqa: Check available space before reading slice offsets
    
    Fixes: Timeout (43sec -> 18sec)
    Fixes: 14556/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_HQ_HQA_fuzzer-5673543024508928
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Reviewed-by: Paul B Mahol <onemda at gmail.com>
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 407e7c34ca8a3047e4f1b14287053638b4add68d)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=81b5f4fac7fca819e3d09d0995f012b50f036585
Author: Andreas Rheinhardt <andreas.rheinhardt at gmail.com>
Date:   Sat Apr 20 00:03:14 2019 +0200

    lavf/webm_chunk: Respect buffer size
    
    The last argument of av_strlcpy is supposed to contain the size of the
    destination buffer, but it was filled with the size of the source
    string, effectively negating its very purpose.
    
    Signed-off-by: Andreas Rheinhardt <andreas.rheinhardt at gmail.com>
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 73ef1f47f59333328264a968c8fbbcfb0bf0643f)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=ae1c6169b6c1d71f68227478fe0d2e899889669d
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sun May 5 18:38:33 2019 +0200

    avcodec/fits: Check bitpix
    
    Reference: Table 8: Interpretation of valid BITPIX value from FITS standard 4.0
    Fixes: runtime error: division by zero
    Fixes: 14581/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_FITS_fuzzer-5652382425284608
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Reviewed-by: Paul B Mahol <onemda at gmail.com>
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 0b5c93b276a14d1990aaabd77410a562f4b242c3)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=cc5257aa270ef78f7f6293b08a97965aff91123d
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sat May 4 00:15:33 2019 +0200

    avcodec/jvdec: Use ff_get_buffer() when the content is not reused
    
    Fixes: Timeout (11sec -> 5sec)
    Fixes: 14473/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_JV_fuzzer-5761630857592832
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Reviewed-by: Peter Ross <pross at xvid.org>
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 09edcd35726c9ebea8a175b54dfe05483f7154f2)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=0fe00cdc5443512c982b09595df61a47173f8b2c
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sat Apr 20 01:05:44 2019 +0200

    avcodec/truemotion2: Fix 2 integer overflows in tm2_update_block()
    
    Fixes: signed integer overflow: -2147483648 + -1 cannot be represented in type 'int'
    Fixes: 14107/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_TRUEMOTION2_fuzzer-5694078680825856
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit f4a1b8d409639b2394589efe20ad55410cce391c)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=b131d7653ecbd95ba7f432b1952f3ca514aadd19
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Tue Apr 16 00:41:54 2019 +0200

    avcodec/jpeg2000: Check stepsize before using it
    
    Fixes: value 1.87633e+10 is outside the range of representable values of type 'int'
    Fixes: Undefined behavior
    Fixes: 14246/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_JPEG2000_fuzzer-5758393601490944
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 06ef186fa1b7329c6fe6723372a72464c998059b)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=85b8a4d2c7f4e2b5ea2ac0ba6f3bbfa12a10708d
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Fri Mar 29 08:58:49 2019 +0100

    avcodec/aacdec_fixed: Fix undefined shift in noise_scale()
    
    Fixes: 13655/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_AAC_FIXED_fuzzer-5120559430500352
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 8ea211ab79d646f6d0af0945971ee55f36bfcbc9)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=bbbe82b142f26ce54dd55f5589b4d5c436b280df
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Tue Apr 16 00:09:38 2019 +0200

    avutil/avstring: Fix bug and undefined behavior in av_strncasecmp()
    
    The function in case of n=0 would read more bytes than 0.
    The end pointer could be beyond the allocated space, which
    is undefined.
    
    Reviewed-by: Paul B Mahol <onemda at gmail.com>
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 6f0e9a863466bfcbd75ee15d4d8a6aad2a5126a4)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=26d7824352f0baada703024b4920166004b451af
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Tue Apr 16 22:15:14 2019 +0200

    avformat/mov: Skip stsd adjustment without chunks
    
    Fixes: Assertion failure
    Fixes: clusterfuzz-testcase-minimized-media_pipeline_integration_fuzzer-5683096400822272
    
    Found-by: Clusterfuzz
    Reported-by: Dan Sanders <sandersd at google.com>
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 18a567c369d74af5ef651b07c4c5615f5598616b)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=59ac4182583e4791a7f98b79099916fd96beedfd
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Tue Apr 16 23:56:43 2019 +0200

    avformat/aadec: Check for scanf() failure
    
    Fixes: use of uninitialized variables
    Fixes: blank.aa
    
    Found-by: Chamal De Silva <chamal.desilva at gmail.com>
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit ed188f6dcdf0935c939ed813cf8745d50742014b)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=7751626787a4b9075880312d128cd4bc0caaedbc
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sat Apr 20 18:11:42 2019 +0200

    avcodec/ccaption_dec: Add a blank like at the end to avoid rollup reading from outside
    
    Fixes: index 20 out of bounds for type 'const char *[4][128]'
    Fixes: 14367/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_CCAPTION_fuzzer-5718819672162304
    
    Reviewed-by: Paul B Mahol <onemda at gmail.com>
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit f17e8e90bb1fe5e4db18cc6dde9522417108c7bd)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=b27afd717d21730df02d22f4dc93e13a02be93ec
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Fri Apr 12 00:09:57 2019 +0200

    avcodec/ivi: Move buffer/block end check to caller of ivi_dc_transform()
    
    Fixes: assertion failure
    Fixes: 14078/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_INDEO5_fuzzer-5760571284127744
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 110dce96331529a13cc815d3c852aed9d37f83d0)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=76f6712057e1e6ad0f9f2a8e4f83c4656e24e81e
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sun Apr 7 16:44:53 2019 +0200

    avcodec/diracdec: Use 64bit in intermediate of global motion vector field generation
    
    It seems the specification does not limit the value to 32bit
    
    Fixes: signed integer overflow: -109611143 * 24 cannot be represented in type 'int'
    Fixes: 13477/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_DIRAC_fuzzer-5648337460527104
    
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 837820f385af699f9bee5e2ba3169dda15e5894d)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=12a6305799d8768fa88daf1e3fa294abb19024d6
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Wed Mar 27 00:39:56 2019 +0100

    avcodec/truemotion2: Fix integer overflow in tm2_decode_blocks()
    
    Fixes: signed integer overflow: 255 + 2147483634 cannot be represented in type 'int'
    Fixes: 13472/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_TRUEMOTION2_fuzzer-5712444142387200
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 0ad0533e914a2618aea1dc77748037bd8459f61d)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

URL:    http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=1a71be4eaa22f131de272232672746622956638f
Author: Michael Niedermayer <michael at niedermayer.cc>
Date:   Sun Mar 31 17:31:17 2019 +0200

    avcodec/rscc: Check that the to be uncompressed input is large enough
    
    Fixes: Out of array access
    Fixes: 13984/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_RSCC_fuzzer-5734128093233152
    
    Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
    Reviewed-by: Paul B Mahol <onemda at gmail.com>
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
    (cherry picked from commit 3a0ec1511e7040845a0d1ce99fe2f30a0972b6d2)
    Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>



More information about the ffmpeg-cvslog mailing list