Message ID | 20210102012233.10261-1-michael@niedermayer.cc |
---|---|
State | Accepted |
Commit | c35e456f54d6c59ea62b18ce5b273da67c60903c |
Headers | show |
Series | [FFmpeg-devel,1/2] avformat/mvdec: Allocate extradata only once | expand |
Context | Check | Description |
---|---|---|
andriy/x86_make | success | Make finished |
andriy/x86_make_fate | success | Make fate finished |
andriy/PPC64_make | success | Make finished |
andriy/PPC64_make_fate | success | Make fate finished |
On Sat, Jan 02, 2021 at 02:22:32AM +0100, Michael Niedermayer wrote: > Fixes: memleak > Fixes: 28686/clusterfuzz-testcase-minimized-ffmpeg_DEMUXER_fuzzer-5822961932173312 > > Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg > Signed-off-by: Michael Niedermayer <michael@niedermayer.cc> > --- > libavformat/mvdec.c | 10 ++++++---- > 1 file changed, 6 insertions(+), 4 deletions(-) will apply [...]
diff --git a/libavformat/mvdec.c b/libavformat/mvdec.c index d8f121bea5..2adb80a178 100644 --- a/libavformat/mvdec.c +++ b/libavformat/mvdec.c @@ -210,10 +210,12 @@ static int parse_video_var(AVFormatContext *avctx, AVStream *st, st->codecpar->width = var_read_int(pb, size); } else if (!strcmp(name, "ORIENTATION")) { if (var_read_int(pb, size) == 1101) { - st->codecpar->extradata = av_strdup("BottomUp"); - if (!st->codecpar->extradata) - return AVERROR(ENOMEM); - st->codecpar->extradata_size = 9; + if (!st->codecpar->extradata) { + st->codecpar->extradata = av_strdup("BottomUp"); + if (!st->codecpar->extradata) + return AVERROR(ENOMEM); + st->codecpar->extradata_size = 9; + } } } else if (!strcmp(name, "Q_SPATIAL") || !strcmp(name, "Q_TEMPORAL")) { var_read_metadata(avctx, name, size);
Fixes: memleak Fixes: 28686/clusterfuzz-testcase-minimized-ffmpeg_DEMUXER_fuzzer-5822961932173312 Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg Signed-off-by: Michael Niedermayer <michael@niedermayer.cc> --- libavformat/mvdec.c | 10 ++++++---- 1 file changed, 6 insertions(+), 4 deletions(-)