mirror of
https://github.com/FFmpeg/FFmpeg.git
synced 2025-01-13 21:28:01 +02:00
avcodec/diracdec: Fix off by 1 error in quant check
Fixes: out of array read Fixes: 1781/clusterfuzz-testcase-minimized-4617176877105152 Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg Signed-off-by: Michael Niedermayer <michael@niedermayer.cc>
This commit is contained in:
parent
6d6fc4105b
commit
b946bd8ef2
@ -823,7 +823,7 @@ static int decode_hq_slice(DiracContext *s, DiracSlice *slice, uint8_t *tmp_buf)
|
|||||||
skip_bits_long(gb, 8*s->highquality.prefix_bytes);
|
skip_bits_long(gb, 8*s->highquality.prefix_bytes);
|
||||||
quant_idx = get_bits(gb, 8);
|
quant_idx = get_bits(gb, 8);
|
||||||
|
|
||||||
if (quant_idx > DIRAC_MAX_QUANT_INDEX) {
|
if (quant_idx > DIRAC_MAX_QUANT_INDEX - 1) {
|
||||||
av_log(s->avctx, AV_LOG_ERROR, "Invalid quantization index - %i\n", quant_idx);
|
av_log(s->avctx, AV_LOG_ERROR, "Invalid quantization index - %i\n", quant_idx);
|
||||||
return AVERROR_INVALIDDATA;
|
return AVERROR_INVALIDDATA;
|
||||||
}
|
}
|
||||||
|
Loading…
Reference in New Issue
Block a user