[FFmpeg-devel] [PATCH] avcodec/speexdec: check for sane s->frame_size values

Michael Niedermayer michael at niedermayer.cc
Fri Feb 16 19:48:30 EET 2024


On Fri, Feb 16, 2024 at 11:19:25AM -0300, James Almer wrote:
> Fixes heap buffer overflows
> 
> Reported-by: sploitem <sploitem at gmail.com>
> Signed-off-by: James Almer <jamrial at gmail.com>
> ---
>  libavcodec/speexdec.c | 5 ++++-
>  1 file changed, 4 insertions(+), 1 deletion(-)

ok, though note that i do not know speexdec.c well enough to say that this
is or is not sufficient

thx

[...]
-- 
Michael     GnuPG fingerprint: 9FF2128B147EF6730BADF133611EC787040B0FAB

During times of universal deceit, telling the truth becomes a
revolutionary act. -- George Orwell
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 195 bytes
Desc: not available
URL: <https://ffmpeg.org/pipermail/ffmpeg-devel/attachments/20240216/71579fb7/attachment.sig>


More information about the ffmpeg-devel mailing list