]> git.sesse.net Git - ffmpeg/commit
avcodec/dxv: Check op_offset in dxv_decompress_yo()
authorMichael Niedermayer <michael@niedermayer.cc>
Mon, 30 Sep 2019 06:02:11 +0000 (08:02 +0200)
committerMichael Niedermayer <michael@niedermayer.cc>
Mon, 30 Sep 2019 20:44:43 +0000 (22:44 +0200)
commit97450d2b6a08769cbc4665bc66f6db9e8c5da2a4
tree0a5721fc7caecaae2d2ea896b16f74eb12f43601
parent75fefb1fb7ac8b423e08a8dca19b19884a325ebf
avcodec/dxv: Check op_offset in dxv_decompress_yo()

Fixes: signed integer overflow: -2147483648 - 8 cannot be represented in type 'int'
Fixes: 17745/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_DXV_fuzzer-5734628463214592
Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
Reviewed-by: Paul B Mahol <onemda@gmail.com>
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc>
libavcodec/dxv.c