[gstreamer-bugs] [Bug 324209] [CVE-2005-4048] avcodec_default_get_buffer heap overflow

GStreamer (bugzilla.gnome.org) bugzilla-daemon at bugzilla.gnome.org
Fri Jan 13 01:34:38 PST 2006


Do not reply to this via email (we are currently unable to handle email
responses and they get discarded).  You can add comments to this bug at
http://bugzilla.gnome.org/show_bug.cgi?id=324209
 GStreamer | gst-ffmpeg | Ver: 0.10.0


Tim-Philipp Müller changed:

           What    |Removed                     |Added
----------------------------------------------------------------------------
  Attachment #56041|none                        |committed
               Flag|                            |




------- Comment #3 from Tim-Philipp Müller  2006-01-13 09:34 UTC -------
Andy, speaking for myself only I can tell you why this patch sat here for so
long: because I don't have the slightest idea how/where to apply it. I am not
sure whether committing it directly to mirror/ffmpeg/libavcodec is the right
way of doing this, it should probably have gone as a patch into the patch
directory, no?

Besides, we might not actually affected by this as we require a minimum size of
16x16 and should bail out before the decoding step because of that, but I
haven't actually checked whether we do.

Loic, do you happen to have one of those .pngs at hand by any chance?


-- 
Configure bugmail: http://bugzilla.gnome.org/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are the QA contact for the bug.
You are the assignee for the bug.




More information about the Gstreamer-bugs mailing list