[MPlayer-dev-eng] [PATCH] segfault for fuzzed AAC (was 'segfault fix when parsing fuzzed ogg files')

Reimar Döffinger Reimar.Doeffinger at stud.uni-karlsruhe.de
Tue Jul 17 17:16:12 CEST 2007


Hello,
On Tue, Jul 17, 2007 at 02:17:06PM +0200, Attila Kinali wrote:
> On Tue, 10 Jul 2007 01:28:08 +0200
> Pierre Lombard <p_l at gmx.fr> wrote:
> 
> > * Pierre Lombard <p_l at gmx.fr> [2007-07-08 22:49]:
> > 
> > > I've just stumbled upon a few files at :
> > >   http://sam.zoy.org/zzuf/
> > > 
> > > Every segfault reported there seems fixed in mplayer SVN but the 3
> > > following cases cause problems here :
> > 
> > >  => http://sam.zoy.org/zzuf/lol-mplayer.aac
> > > Segfaults - null pointer use (see attached log).
> > 
> > Patch attached... but I've a vague feeling that it's not a proper fix
> > but a last-minute bandaid.
> 
> Any comments on this patch?

Honest answerer? If it's not otherwise exploitable, let it crash. It is
an external lib we neither can nor want to maintain, and using upstream
is not an option either.

Greetings,
Reimar Döffinger



More information about the MPlayer-dev-eng mailing list