]> git.sesse.net Git - ffmpeg/commit
avformat/aiffdec: Check size before subtraction in get_aiff_header()
authorMichael Niedermayer <michael@niedermayer.cc>
Tue, 10 Nov 2020 22:01:12 +0000 (23:01 +0100)
committerMichael Niedermayer <michael@niedermayer.cc>
Fri, 29 Jan 2021 18:36:46 +0000 (19:36 +0100)
commit8af299acde9601e64740b75430960503615873b4
tree3b3a85119feaa43a800ef111a44f1794a2278c9d
parentc6edbf009063275365362c343fdbd6d24c838e3f
avformat/aiffdec: Check size before subtraction in get_aiff_header()

Fixes: Infinite loop
Fixes: 27235/clusterfuzz-testcase-minimized-ffmpeg_dem_AIFF_fuzzer-5761398380167168
Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc>
libavformat/aiffdec.c