[FFmpeg-devel] [PATCH] avformat/mov: Check channels for mov_parse_stsd_audio()

Michael Niedermayer michael at niedermayer.cc
Mon Nov 29 16:59:42 EET 2021


On Sun, Nov 07, 2021 at 02:31:31PM +0100, Michael Niedermayer wrote:
> Fixes: signed integer overflow: -776522110086937600 * 16 cannot be represented in type 'long'
> Fixes: 40563/clusterfuzz-testcase-minimized-ffmpeg_dem_MOV_fuzzer-6644829447127040
> 
> Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
> Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>
> ---
>  libavformat/mov.c | 4 ++++
>  1 file changed, 4 insertions(+)

will apply

[...]
-- 
Michael     GnuPG fingerprint: 9FF2128B147EF6730BADF133611EC787040B0FAB

Many things microsoft did are stupid, but not doing something just because
microsoft did it is even more stupid. If everything ms did were stupid they
would be bankrupt already.
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 195 bytes
Desc: not available
URL: <https://ffmpeg.org/pipermail/ffmpeg-devel/attachments/20211129/998eedd1/attachment.sig>


More information about the ffmpeg-devel mailing list