*Hello FFmpeg Developers,* I am reporting a Floating Point Exception (FPE) in the VPK demuxer ( libavformat/vpk.c) discovered via fuzzing. The crash occurs when processing a crafted 21-byte VPK file, likely due to an unvalidated header value causing a division by zero.
*Reproduction:* 1. Build FFmpeg from the latest master (as of late March 2026). 2. Run the following command: ffmpeg -i [attached_crash_file] -f null - *Observed Result:* The process terminates with a Floating point exception: 8 (or UndefinedBehaviorSanitizer: division by zero). *Expected Result:* The demuxer should validate the header and return AVERROR_INVALIDDATA instead of crashing. *Hello FFmpeg Developers,* I have discovered a Floating Point Exception (division by zero) in the VPK demuxer (libavformat/vpk.c) using a fuzzer. The crash is triggered by the attached 21-byte PoC file. *Reproduction:* ffmpeg -i vpk_crash_poc -f null - *Tested on:* - *OS:* macOS (Apple Silicon) - *Git Hash:* f76aa4e4087569f99af1b4d87c04f160fb2378ce - *Result:* Floating point exception: 8 (or UndefinedBehaviorSanitizer: division by zero) *Analysis:* The crash appears to occur during header parsing where a sample rate or channel count of zero is not properly validated before being used in a division operation. Please see the attached 21-byte PoC file. *Best regards,* Samyak CRASH FILE :
vpk_crash_poc
Description: Binary data
_______________________________________________ ffmpeg-devel mailing list -- [email protected] To unsubscribe send an email to [email protected]
