summaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorMichael Niedermayer <[email protected]>2021-12-03 17:42:22 +0100
committerMichael Niedermayer <[email protected]>2022-04-06 20:38:05 +0200
commit58368cc528cd82020be530694c2d8747b73b13f6 (patch)
treed5a1290de0a92129c1924835774ce74d02aab510
parent784303ca013d4d8de9808472b8e28205ec5f7f7b (diff)
avformat/mov: Disallow duplicate smdm
Fixes: memleak Fixes: 39879/clusterfuzz-testcase-minimized-ffmpeg_dem_MOV_fuzzer-5327819907923968 Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg Signed-off-by: Michael Niedermayer <[email protected]> (cherry picked from commit b5ba74053c1ef9f38d9e7b3a036675f06d2b2714) Signed-off-by: Michael Niedermayer <[email protected]>
-rw-r--r--libavformat/mov.c3
1 files changed, 3 insertions, 0 deletions
diff --git a/libavformat/mov.c b/libavformat/mov.c
index 309b813ba3..07bbebab0e 100644
--- a/libavformat/mov.c
+++ b/libavformat/mov.c
@@ -5406,6 +5406,9 @@ static int mov_read_smdm(MOVContext *c, AVIOContext *pb, MOVAtom atom)
av_log(c->fc, AV_LOG_WARNING, "Unsupported Mastering Display Metadata box version %d\n", version);
return 0;
}
+ if (sc->mastering)
+ return AVERROR_INVALIDDATA;
+
avio_skip(pb, 3); /* flags */
sc->mastering = av_mastering_display_metadata_alloc();