[FFmpeg-devel] [FFmpeg-cvslog] avcodec/tiff: do not abort decoding if strips are available

Michael Niedermayer michael at niedermayer.cc
Mon Nov 2 12:21:45 EET 2020


On Wed, Oct 07, 2020 at 08:19:12PM +0000, Paul B Mahol wrote:
> ffmpeg | branch: master | Paul B Mahol <onemda at gmail.com> | Fri Oct  2 12:16:49 2020 +0200| [da5b3d002862d1e105002a6dc1567e6551860896] | committer: Paul B Mahol
> 
> avcodec/tiff: do not abort decoding if strips are available
> 
> Even if such files are invalid, they can be decoded just fine.

Please provide such files so it can be implemented correctly
this commit causes security issues
Without such invalid-tile+stripe-jpegs which we can decode
its plausible that a fix to the security issue will break that
class of files again

Thanks

[...]
-- 
Michael     GnuPG fingerprint: 9FF2128B147EF6730BADF133611EC787040B0FAB

If you fake or manipulate statistics in a paper in physics you will never
get a job again.
If you fake or manipulate statistics in a paper in medicin you will get
a job for life at the pharma industry.
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 195 bytes
Desc: not available
URL: <https://ffmpeg.org/pipermail/ffmpeg-devel/attachments/20201102/3da77eb5/attachment.sig>


More information about the ffmpeg-devel mailing list