Re: [FFmpeg-devel] [PATCH 1/4] avformat/rmdec: Check old_format len for overflow

2021-06-17 Thread Michael Niedermayer
On Tue, Apr 27, 2021 at 09:21:32PM +0200, Michael Niedermayer wrote: > Maybe such large values could be disallowed earlier and closer to where > they are set. > > Fixes: signed integer overflow: 538976288 * 8224 cannot be represented in > type 'int' > Fixes: > 29102/clusterfuzz-testcase-minimize

[FFmpeg-devel] [PATCH 1/4] avformat/rmdec: Check old_format len for overflow

2021-04-27 Thread Michael Niedermayer
Maybe such large values could be disallowed earlier and closer to where they are set. Fixes: signed integer overflow: 538976288 * 8224 cannot be represented in type 'int' Fixes: 29102/clusterfuzz-testcase-minimized-ffmpeg_dem_RM_fuzzer-6704350354341888 Found-by: continuous fuzzing process http