[FFmpeg-devel] [PATCH] avformat/hls: Fix DoS due to infinite loop

Michael Niedermayer michael at niedermayer.cc
Tue Aug 29 04:07:45 EEST 2017


On Mon, Aug 28, 2017 at 11:21:39AM +0200, wm4 wrote:
> On Sun, 27 Aug 2017 19:16:03 +0200
> Michael Niedermayer <michael at niedermayer.cc> wrote:
> 
> > On Sat, Aug 26, 2017 at 01:26:58AM +0200, Michael Niedermayer wrote:
> > > Fixes: loop.m3u
> > > 
> > > The default max iteration count of 1000 is arbitrary and ideas for a better solution are welcome
> > > 
> > > Found-by: Xiaohei and Wangchu from Alibaba Security Team
> > > Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
> > > ---
> > >  doc/demuxers.texi | 18 ++++++++++++++++++
> > >  libavformat/hls.c |  7 +++++++
> > >  2 files changed, 25 insertions(+)  
> > 
> > applied
> > 
> > [...]
> 
> I rejected this approach, but I guess patch reviews are ignored anyway.

I explicitly asked if you veto this patch, you did not veto it.
It is extreemly inpolite, to ignore an explicit question about
you objecting and afterwards claim your rejection was ignored.

[...]
-- 
Michael     GnuPG fingerprint: 9FF2128B147EF6730BADF133611EC787040B0FAB

If you think the mosad wants you dead since a long time then you are either
wrong or dead since a long time.
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 181 bytes
Desc: Digital signature
URL: <http://ffmpeg.org/pipermail/ffmpeg-devel/attachments/20170829/a2e70daf/attachment.sig>


More information about the ffmpeg-devel mailing list