mirror of
https://github.com/FFmpeg/FFmpeg.git
synced 2024-12-28 20:53:54 +02:00
libopenmpt: add missing avio_read return value check
This fixes heap-buffer-overflows in libopenmpt caused by interpreting the negative size value as unsigned size_t. Signed-off-by: Andreas Cadhalpun <Andreas.Cadhalpun@googlemail.com> Reviewed-by: Jörn Heusipp <osmanx@problemloesungsmaschine.de> Signed-off-by: Michael Niedermayer <michael@niedermayer.cc>
This commit is contained in:
parent
c2500d62c6
commit
367cac7827
@ -82,6 +82,11 @@ static int read_header_openmpt(AVFormatContext *s)
|
||||
if (!buf)
|
||||
return AVERROR(ENOMEM);
|
||||
size = avio_read(s->pb, buf, size);
|
||||
if (size < 0) {
|
||||
av_log(s, AV_LOG_ERROR, "Reading input buffer failed.\n");
|
||||
av_freep(&buf);
|
||||
return size;
|
||||
}
|
||||
|
||||
openmpt->module = openmpt_module_create_from_memory(buf, size, openmpt_logfunc, s, NULL);
|
||||
av_freep(&buf);
|
||||
|
Loading…
Reference in New Issue
Block a user