[FFmpeg-cvslog] avcodec/aac/aacdec: Clear SFO on error

Michael Niedermayer git at videolan.org
Mon Feb 17 03:35:19 EET 2025


ffmpeg | branch: master | Michael Niedermayer <michael at niedermayer.cc> | Fri Feb  7 23:31:20 2025 +0100| [d1be369af6a6f01976be8c80be1177dc524983e5] | committer: Michael Niedermayer

avcodec/aac/aacdec: Clear SFO on error

types and SFO become confused for a USAC stream

Fixes: out of array access
Fixes: 383854203/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_AAC_LATM_fuzzer-4996677847547904.fuzz

Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
Signed-off-by: Michael Niedermayer <michael at niedermayer.cc>

> http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=d1be369af6a6f01976be8c80be1177dc524983e5
---

 libavcodec/aac/aacdec.c | 1 +
 1 file changed, 1 insertion(+)

diff --git a/libavcodec/aac/aacdec.c b/libavcodec/aac/aacdec.c
index c0850853b4..8d50ad6d09 100644
--- a/libavcodec/aac/aacdec.c
+++ b/libavcodec/aac/aacdec.c
@@ -1747,6 +1747,7 @@ int ff_aac_decode_ics(AACDecContext *ac, SingleChannelElement *sce,
 
     return 0;
 fail:
+    memset(sce->sfo, 0, sizeof(sce->sfo));
     tns->present = 0;
     return ret;
 }



More information about the ffmpeg-cvslog mailing list