diff options
author | Michael Niedermayer <michael@niedermayer.cc> | 2019-06-16 11:39:15 +0200 |
---|---|---|
committer | Michael Niedermayer <michael@niedermayer.cc> | 2019-07-31 20:35:07 +0200 |
commit | 267eb2ab7f87696e1a156ca9a5ff1b1628d170c1 (patch) | |
tree | 50c29453969cb7c419299b49740323a3f2bc17a0 /libavcodec/vp56dsp.c | |
parent | da5039415c2bd625085d15e6c92e0b64eefddcbf (diff) | |
download | ffmpeg-267eb2ab7f87696e1a156ca9a5ff1b1628d170c1.tar.gz |
avcodec/apedec: Fix multiple integer overflows and undefined behaviorin filter_3800()
Fixes: left shift of negative value -4
Fixes: signed integer overflow: -15091694 * 167 cannot be represented in type 'int'
Fixes: signed integer overflow: 1898547155 + 453967445 cannot be represented in type 'int'
Fixes: 15258/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_APE_fuzzer-5759095564402688
Fixes: signed integer overflow: 962196438 * 31 cannot be represented in type 'int'
Fixes: 15364/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_APE_fuzzer-5718799845687296
Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc>
Diffstat (limited to 'libavcodec/vp56dsp.c')
0 files changed, 0 insertions, 0 deletions