浏览代码

avcodec/osq: Fix 32bit sample overflow

Fixes: signed integer overflow: 2147483565 + 128 cannot be represented in type 'int'
Fixes: 428055715/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_OSQ_fuzzer-6358069900804096

Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc>
(cherry picked from commit 08816b93760f43433a07e980fa9eeab4135de78c)
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc>
Michael Niedermayer 4 月之前
父节点
当前提交
90b8d6d0b3
共有 1 个文件被更改,包括 1 次插入1 次删除
  1. 1 1
      libavcodec/osq.c

+ 1 - 1
libavcodec/osq.c

@@ -389,7 +389,7 @@ static int osq_decode_block(AVCodecContext *avctx, AVFrame *frame)
             int32_t *src = s->decode_buffer[ch] + OFFSET;
             int32_t *src = s->decode_buffer[ch] + OFFSET;
 
 
             for (int n = 0; n < nb_samples; n++)
             for (int n = 0; n < nb_samples; n++)
-                dst[n] = av_clip_uint8(src[n] + 0x80);
+                dst[n] = av_clip_uint8(src[n] + 0x80ll);
         }
         }
         break;
         break;
     case AV_SAMPLE_FMT_S16P:
     case AV_SAMPLE_FMT_S16P: