[FFmpeg-devel] [PATCH 3/7] avformat/av1dec: check size before addition in probing

Michael Niedermayer michael at niedermayer.cc
Sun Dec 6 18:36:21 EET 2020


On Fri, Nov 06, 2020 at 12:11:06AM +0100, Michael Niedermayer wrote:
> Fixes: signed integer overflow: 175 + 2147483571 cannot be represented in type 'int'
> Fixes: 26833/clusterfuzz-testcase-minimized-ffmpeg_dem_IMAGE2_fuzzer-5969501214212096
> 
> Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
> Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
> ---
>  libavformat/av1dec.c | 2 +-
>  1 file changed, 1 insertion(+), 1 deletion(-)

will apply



-- 
Michael     GnuPG fingerprint: 9FF2128B147EF6730BADF133611EC787040B0FAB

Dictatorship naturally arises out of democracy, and the most aggravated
form of tyranny and slavery out of the most extreme liberty. -- Plato
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 195 bytes
Desc: not available
URL: <https://ffmpeg.org/pipermail/ffmpeg-devel/attachments/20201206/78a9d326/attachment.sig>


More information about the ffmpeg-devel mailing list