diff options
author | Michael Niedermayer <michael@niedermayer.cc> | 2019-06-16 11:39:15 +0200 |
---|---|---|
committer | Michael Niedermayer <michael@niedermayer.cc> | 2019-08-04 21:16:28 +0200 |
commit | a33fd082661faa0a6eda7a4ede722fdb865ddc8b (patch) | |
tree | 95a71e470963ba9433609ac9167b4eca1dc96267 /tests/api/api-codec-param-test.c | |
parent | 5fa0b18c95a0324a933101a727106e7cbf6597b6 (diff) | |
download | ffmpeg-a33fd082661faa0a6eda7a4ede722fdb865ddc8b.tar.gz |
avcodec/apedec: Fix multiple integer overflows and undefined behaviorin filter_3800()
Fixes: left shift of negative value -4
Fixes: signed integer overflow: -15091694 * 167 cannot be represented in type 'int'
Fixes: signed integer overflow: 1898547155 + 453967445 cannot be represented in type 'int'
Fixes: 15258/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_APE_fuzzer-5759095564402688
Fixes: signed integer overflow: 962196438 * 31 cannot be represented in type 'int'
Fixes: 15364/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_APE_fuzzer-5718799845687296
Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc>
(cherry picked from commit 267eb2ab7f87696e1a156ca9a5ff1b1628d170c1)
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc>
Diffstat (limited to 'tests/api/api-codec-param-test.c')
0 files changed, 0 insertions, 0 deletions