diff options
author | Michael Niedermayer <michaelni@gmx.at> | 2012-07-28 17:14:50 +0600 |
---|---|---|
committer | Reinhard Tartler <siretart@tauware.de> | 2012-10-17 21:35:25 +0200 |
commit | 3c55bf1201ac75c5e46b03e3e077031f755f85d0 (patch) | |
tree | 3542fb6c8bdd4a9359870ea27194bff038864bf6 /libavcodec/rangecoder.c | |
parent | dc5283dffcd41e8a41671d7566dfdd27c25e66bf (diff) | |
download | ffmpeg-3c55bf1201ac75c5e46b03e3e077031f755f85d0.tar.gz |
vc1dec: check that coded slice positions and interlacing match.
This fixes out of array writes.
Addresses: CVE-2012-2796
Found-by: Mateusz "j00ru" Jurczyk and Gynvael Coldwind
Signed-off-by: Michael Niedermayer <michaelni@gmx.at>
Signed-off-by: Kostya Shishkov <kostya.shishkov@gmail.com>
(cherry picked from commit 1100acbab26883007898c53efeb289f562c6e514)
Signed-off-by: Reinhard Tartler <siretart@tauware.de>
Diffstat (limited to 'libavcodec/rangecoder.c')
0 files changed, 0 insertions, 0 deletions