You've already forked FFmpeg
mirror of
https://github.com/FFmpeg/FFmpeg.git
synced 2025-08-15 14:13:16 +02:00
matroskadec: prevent potential integer overflow
Iam not sure this can happen, but its safer we check. Signed-off-by: Michael Niedermayer <michaelni@gmx.at>
This commit is contained in:
@@ -1580,7 +1580,7 @@ static int matroska_read_header(AVFormatContext *s)
|
||||
&& (track->codec_priv.data != NULL)) {
|
||||
fourcc = AV_RL32(track->codec_priv.data);
|
||||
codec_id = ff_codec_get_id(ff_codec_movvideo_tags, fourcc);
|
||||
} else if (codec_id == CODEC_ID_ALAC && track->codec_priv.size) {
|
||||
} else if (codec_id == CODEC_ID_ALAC && track->codec_priv.size && track->codec_priv.size < INT_MAX-12) {
|
||||
/* Only ALAC's magic cookie is stored in Matroska's track headers.
|
||||
Create the "atom size", "tag", and "tag version" fields the
|
||||
decoder expects manually. */
|
||||
|
Reference in New Issue
Block a user