diff mbox series

[FFmpeg-devel] avformat/rka: bps < 8 is invalid

Message ID 20230410234745.25355-1-michael@niedermayer.cc
State Accepted
Commit 167b4f56f187edafd94fa2e706897ac3bb450511
Headers show
Series [FFmpeg-devel] avformat/rka: bps < 8 is invalid | expand

Checks

Context Check Description
andriy/make_x86 success Make finished
andriy/make_fate_x86 success Make fate finished

Commit Message

Michael Niedermayer April 10, 2023, 11:47 p.m. UTC
Fixes: division by zero
Fixes: 57828/clusterfuzz-testcase-minimized-ffmpeg_dem_RKA_fuzzer-6571818338353152

Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc>
---
 libavformat/rka.c | 2 +-
 1 file changed, 1 insertion(+), 1 deletion(-)

Comments

Michael Niedermayer July 22, 2023, 3:33 p.m. UTC | #1
On Tue, Apr 11, 2023 at 01:47:45AM +0200, Michael Niedermayer wrote:
> Fixes: division by zero
> Fixes: 57828/clusterfuzz-testcase-minimized-ffmpeg_dem_RKA_fuzzer-6571818338353152
> 
> Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
> Signed-off-by: Michael Niedermayer <michael@niedermayer.cc>
> ---
>  libavformat/rka.c | 2 +-
>  1 file changed, 1 insertion(+), 1 deletion(-)

will apply

[...]
diff mbox series

Patch

diff --git a/libavformat/rka.c b/libavformat/rka.c
index 39e5b3bce12..36e25ade017 100644
--- a/libavformat/rka.c
+++ b/libavformat/rka.c
@@ -72,7 +72,7 @@  static int rka_read_header(AVFormatContext *s)
     if (channels == 0)
         return AVERROR_INVALIDDATA;
     bps = par->extradata[13];
-    if (bps == 0)
+    if (bps < 8)
         return AVERROR_INVALIDDATA;
     size_offset = avio_rl32(s->pb);
     framepos = avio_tell(s->pb);