diff mbox series

[FFmpeg-devel,v3] avcodec/vp9: avoid using uninitialized mutex/condition

Message ID 20210902092322.13352-1-robux4@ycbcr.xyz
State New
Headers show
Series [FFmpeg-devel,v3] avcodec/vp9: avoid using uninitialized mutex/condition | expand


Context Check Description
andriy/make_x86 success Make finished
andriy/make_fate_x86 success Make fate finished
andriy/make_ppc success Make finished
andriy/make_fate_ppc success Make fate finished

Commit Message

Steve Lhomme Sept. 2, 2021, 9:23 a.m. UTC
When using slice decoding vp9_free_entries() is called before
vp9_alloc_entries() is ever called. It should destroy properly
initialized variables (or check it was never called before).

It usually works undetected as pthread implementations allows NULL as a
special value (and should return EINVAL but doesn't). But pthreadGC2
doesn't allow NULL in pthread_mutex_destroy() and crashes when that's
the case.
 libavcodec/vp9.c | 4 ++++
 1 file changed, 4 insertions(+)
diff mbox series


diff --git a/libavcodec/vp9.c b/libavcodec/vp9.c
index 874005a5ae..f4af90eaec 100644
--- a/libavcodec/vp9.c
+++ b/libavcodec/vp9.c
@@ -1796,6 +1796,10 @@  static av_cold int vp9_decode_init(AVCodecContext *avctx)
     s->last_bpp = 0;
     s->s.h.filter.sharpness = -1;
+    if (avctx->active_thread_type & FF_THREAD_SLICE) {
+        pthread_mutex_init(&s->progress_mutex, NULL);
+        pthread_cond_init(&s->progress_cond, NULL);
+    }
     for (int i = 0; i < 3; i++) {
         s->s.frames[i].tf.f = av_frame_alloc();