[FFmpeg-cvslog] lavc/vp8dsp: fix RV32 stack alignment

2024-07-24 Thread Rémi Denis-Courmont
ffmpeg | branch: master | Rémi Denis-Courmont | Tue Jul 23 18:47:08 2024 +0300| [896c22ef000b5d122f14c9f85b364e2d21e1f45c] | committer: Rémi Denis-Courmont lavc/vp8dsp: fix RV32 stack alignment SP must be a multiple of 16 bytes at all times on POSIX - even in leaf functions - so that signal ha

[FFmpeg-cvslog] New commits on branch release/6.1

2024-07-24 Thread Git System
URL: http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=0e3bdf68b2de8c88929113e25a34e7ac4894b744 Author: Michael Niedermayer Date: Wed Jul 24 17:07:09 2024 +0200 Changelog: update Signed-off-by: Michael Niedermayer URL: http://git.videolan.org/gitweb.cgi/ffmpeg.git

[FFmpeg-cvslog] avcodec/diracdsp: Remove unused variable

2024-07-24 Thread Andreas Rheinhardt
ffmpeg | branch: release/4.3 | Andreas Rheinhardt | Wed Sep 23 20:20:12 2020 +0200| [57851936559563d7e135a4602d1c869104b8b95f] | committer: Michael Niedermayer avcodec/diracdsp: Remove unused variable Forgotten in ca3c6c981aa5b0af8a5576020b79fdd3cdf9ae9e. Reviewed-by: Paul B Mahol Signed-off

[FFmpeg-cvslog] update for 4.3.8

2024-07-24 Thread Michael Niedermayer
ffmpeg | branch: release/4.3 | Michael Niedermayer | Wed Jul 24 16:02:21 2024 +0200| [a8975a3b0d276aba126baba30e8e254d2a3729dc] | committer: Michael Niedermayer update for 4.3.8 Signed-off-by: Michael Niedermayer > http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commit;h=a8975a3b0d276aba126

[FFmpeg-cvslog] avcodec/vaapi_encode: Check hwctx

2024-07-24 Thread Michael Niedermayer
ffmpeg | branch: release/4.3 | Michael Niedermayer | Fri Jul 19 22:29:15 2024 +0200| [0f75b041dcf72d4cab2ab46091fed8f68b364843] | committer: Michael Niedermayer avcodec/vaapi_encode: Check hwctx Fixes: null pointer dereference Fixes: 70376/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_H26

[FFmpeg-cvslog] avcodec/proresdec: Consider negative bits left

2024-07-24 Thread Michael Niedermayer
ffmpeg | branch: release/4.3 | Michael Niedermayer | Fri Jul 19 19:21:41 2024 +0200| [e346c7424b1aa11e9e1c1b907526f5a57b184b1b] | committer: Michael Niedermayer avcodec/proresdec: Consider negative bits left Fixes: 70036/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_PRORES_fuzzer-62987976

[FFmpeg-cvslog] avcodec/hevc/hevcdec: Do not allow slices to depend on failed slices

2024-07-24 Thread Michael Niedermayer
ffmpeg | branch: release/4.3 | Michael Niedermayer | Sun Jun 23 23:17:24 2024 +0200| [999720f8fdb1c4588647cf50b7430aa434fd3caa] | committer: Michael Niedermayer avcodec/hevc/hevcdec: Do not allow slices to depend on failed slices An alternative would be to leave the context unchanged on failur

[FFmpeg-cvslog] avutil/buffer: Check ff_mutex_init() for failure

2024-07-24 Thread Michael Niedermayer
ffmpeg | branch: release/4.3 | Michael Niedermayer | Thu Jul 11 22:55:31 2024 +0200| [fcef4eb0e7bfe48954a82b6fac2aadca928a8689] | committer: Michael Niedermayer avutil/buffer: Check ff_mutex_init() for failure Fixes: CID1604487 Unchecked return value Fixes: CID1604494 Unchecked return value S

[FFmpeg-cvslog] avutil/slicethread: Check pthread_*_init() for failure

2024-07-24 Thread Michael Niedermayer
ffmpeg | branch: release/4.3 | Michael Niedermayer | Thu Jul 11 23:27:34 2024 +0200| [23af4eac80bce0c5a1a63e347322a77c3aca2206] | committer: Michael Niedermayer avutil/slicethread: Check pthread_*_init() for failure Fixes: CID1604383 Unchecked return value Fixes: CID1604439 Unchecked return va

[FFmpeg-cvslog] avformat/xmv: Check this_packet_size

2024-07-24 Thread Michael Niedermayer
ffmpeg | branch: release/4.3 | Michael Niedermayer | Thu Jul 11 22:37:54 2024 +0200| [3cc8b4b4954943d236733cea77c42b6ef3b5e253] | committer: Michael Niedermayer avformat/xmv: Check this_packet_size Fixes: CID1604489 Overflowed constant Sponsored-by: Sovereign Tech Fund Signed-off-by: Michael

[FFmpeg-cvslog] avformat/ty: rec_size seems to only need 32bit

2024-07-24 Thread Michael Niedermayer
ffmpeg | branch: release/4.3 | Michael Niedermayer | Thu Jul 11 21:53:58 2024 +0200| [c31d0108b1dac0cad964c0f8e6641b54580bfe2d] | committer: Michael Niedermayer avformat/ty: rec_size seems to only need 32bit May help CID1604560 Overflowed integer argument Sponsored-by: Sovereign Tech Fund Sig

[FFmpeg-cvslog] avutil/frame: Check log2_crop_align

2024-07-24 Thread Michael Niedermayer
ffmpeg | branch: release/4.3 | Michael Niedermayer | Thu Jul 11 23:04:42 2024 +0200| [17a8081d2f50921de6ffdb51b20c2925a60c9a38] | committer: Michael Niedermayer avutil/frame: Check log2_crop_align Fixes: CID1604586 Overflowed constant Sponsored-by: Sovereign Tech Fund Signed-off-by: Michael N

[FFmpeg-cvslog] avformat/tty: Check avio_size()

2024-07-24 Thread Michael Niedermayer
ffmpeg | branch: release/4.3 | Michael Niedermayer | Thu Jul 11 21:05:20 2024 +0200| [7c6f9c872fe42238439b79aaf27c38648caabc96] | committer: Michael Niedermayer avformat/tty: Check avio_size() Fixes: CID1220824 Overflowed constant Sponsored-by: Sovereign Tech Fund Signed-off-by: Michael Niede

[FFmpeg-cvslog] avformat/siff: Basic pkt_size check

2024-07-24 Thread Michael Niedermayer
ffmpeg | branch: release/4.3 | Michael Niedermayer | Thu Jul 11 20:58:21 2024 +0200| [72bca563d5a61c0ee13a1c1ec5970ff7132679f6] | committer: Michael Niedermayer avformat/siff: Basic pkt_size check Fixes: half of CID1258461 Overflowed constant Sponsored-by: Sovereign Tech Fund Signed-off-by: M

[FFmpeg-cvslog] avformat/sauce: Check avio_size() for failure

2024-07-24 Thread Michael Niedermayer
ffmpeg | branch: release/4.3 | Michael Niedermayer | Thu Jul 11 20:49:08 2024 +0200| [e3f7976c4437df3f8525a30812c60ac5c253b2cb] | committer: Michael Niedermayer avformat/sauce: Check avio_size() for failure Fixes: CID1604592 Overflowed constant Sponsored-by: Sovereign Tech Fund Signed-off-by:

[FFmpeg-cvslog] avformat/sapdec: Check ffurl_get_file_handle() for error

2024-07-24 Thread Michael Niedermayer
ffmpeg | branch: release/4.3 | Michael Niedermayer | Thu Jul 11 20:44:45 2024 +0200| [aa3cdc085d0965f665817ada2fde2bc940d8d70f] | committer: Michael Niedermayer avformat/sapdec: Check ffurl_get_file_handle() for error Fixes: CID1604506 Overflowed constant Sponsored-by: Sovereign Tech Fund Sig

[FFmpeg-cvslog] avformat/nsvdec: Check asize for PCM

2024-07-24 Thread Michael Niedermayer
ffmpeg | branch: release/4.3 | Michael Niedermayer | Thu Jul 11 20:29:10 2024 +0200| [a1524dbc936493aaecf1a616c7087584e3900e15] | committer: Michael Niedermayer avformat/nsvdec: Check asize for PCM Fixes: CID1604527 Overflowed constant Sponsored-by: Sovereign Tech Fund Signed-off-by: Michael

[FFmpeg-cvslog] avformat/mp3dec: Check header_filesize

2024-07-24 Thread Michael Niedermayer
ffmpeg | branch: release/4.3 | Michael Niedermayer | Thu Jul 11 20:20:53 2024 +0200| [1c1f537e068c8afbdbc044d7525a8ffa0c2e0767] | committer: Michael Niedermayer avformat/mp3dec: Check header_filesize Fixes: CID1608714 Division or modulo by float zero Sponsored-by: Sovereign Tech Fund Signed-o

[FFmpeg-cvslog] avformat/mp3dec; Check for avio_size() failure

2024-07-24 Thread Michael Niedermayer
ffmpeg | branch: release/4.3 | Michael Niedermayer | Thu Jul 11 20:17:00 2024 +0200| [f21ba27cd63ab1f5c5c482b1cc1a46a3e6b0c954] | committer: Michael Niedermayer avformat/mp3dec; Check for avio_size() failure Fixes: CID1608710 Improper use of negative value Sponsored-by: Sovereign Tech Fund Si

[FFmpeg-cvslog] avformat/mov: Use 64bit for str_size

2024-07-24 Thread Michael Niedermayer
ffmpeg | branch: release/4.3 | Michael Niedermayer | Thu Jul 11 20:03:45 2024 +0200| [02e6d29c3331b47aa686f98a1bc0cd87d507efa7] | committer: Michael Niedermayer avformat/mov: Use 64bit for str_size We assign a 64bit variable to it before checking Fixes: CID1604544 Overflowed integer argument

[FFmpeg-cvslog] avformat/mm: Check length

2024-07-24 Thread Michael Niedermayer
ffmpeg | branch: release/4.3 | Michael Niedermayer | Thu Jul 11 19:29:14 2024 +0200| [000b9de913478eef9a2effa8969d575ce33cac6e] | committer: Michael Niedermayer avformat/mm: Check length Fixes: CID1220824 Overflowed constant Sponsored-by: Sovereign Tech Fund Signed-off-by: Michael Niedermayer

[FFmpeg-cvslog] avfilter/scale_eval: Use 64bit, check values in ff_scale_adjust_dimensions()

2024-07-24 Thread Michael Niedermayer
ffmpeg | branch: release/4.3 | Michael Niedermayer | Mon Jul 8 22:01:29 2024 +0200| [8860326a1ad4b9f212c019b6840dc5842b192101] | committer: Michael Niedermayer avfilter/scale_eval: Use 64bit, check values in ff_scale_adjust_dimensions() Found by reviewing CID1513722 Operands don't affect resu

[FFmpeg-cvslog] avformat/hnm: Check *chunk_size

2024-07-24 Thread Michael Niedermayer
ffmpeg | branch: release/4.3 | Michael Niedermayer | Thu Jul 11 18:40:46 2024 +0200| [adabe1aa9e13a12d89ae8ad9c74ed11f544c94ee] | committer: Michael Niedermayer avformat/hnm: Check *chunk_size Fixes: CID1604419 Overflowed constant Sponsored-by: Sovereign Tech Fund Signed-off-by: Michael Niede

[FFmpeg-cvslog] avfilter/vf_lut3d: Check av_scanf()

2024-07-24 Thread Michael Niedermayer
ffmpeg | branch: release/4.3 | Michael Niedermayer | Mon Jul 8 01:33:11 2024 +0200| [0ca3416176a1bc54b89e58b8c06ecaf070d8f9b5] | committer: Michael Niedermayer avfilter/vf_lut3d: Check av_scanf() Fixes: CID1604398 Unchecked return value Fixes: CID1604542 Unchecked return value Sponsored-by:

[FFmpeg-cvslog] avformat/asfdec_o: Check size of index object

2024-07-24 Thread Michael Niedermayer
ffmpeg | branch: release/4.3 | Michael Niedermayer | Thu Jul 11 17:38:08 2024 +0200| [5364d0de5cc016f3612ba7d479164f147fe1b22c] | committer: Michael Niedermayer avformat/asfdec_o: Check size of index object We subtract 24 so it must be at least 24 Fixes: CID1604482 Overflowed constant Sponso

[FFmpeg-cvslog] avformat/hlsenc: Check ret

2024-07-24 Thread Michael Niedermayer
ffmpeg | branch: release/4.3 | Michael Niedermayer | Thu Jul 11 18:37:54 2024 +0200| [a7c43833f29a7cb99627ac29820eea34ae3416aa] | committer: Michael Niedermayer avformat/hlsenc: Check ret Fixes: CID1609624 Unused value Sponsored-by: Sovereign Tech Fund Signed-off-by: Michael Niedermayer (che

[FFmpeg-cvslog] avformat/bintext: Check avio_size() return

2024-07-24 Thread Michael Niedermayer
ffmpeg | branch: release/4.3 | Michael Niedermayer | Thu Jul 11 18:10:00 2024 +0200| [f96036e4100301a31971febeb84316aab78e6206] | committer: Michael Niedermayer avformat/bintext: Check avio_size() return Fixes: CID1604503 Overflowed constant Fixes: CID1604566 Overflowed constant Sponsored-by:

[FFmpeg-cvslog] swscale/output: Fix integer overflows in yuv2rgba64_X_c_template

2024-07-24 Thread Michael Niedermayer
ffmpeg | branch: release/4.3 | Michael Niedermayer | Tue Jul 16 23:44:04 2024 +0200| [3cfd197beac002cd13cd466f301d7bc366e2e919] | committer: Michael Niedermayer swscale/output: Fix integer overflows in yuv2rgba64_X_c_template Fixes: signed integer overflow: -1082982400 + -1068681048 cannot be

[FFmpeg-cvslog] avfilter/vf_deshake_opencl: Ensure that the first iteration initializes the best variables

2024-07-24 Thread Michael Niedermayer
ffmpeg | branch: release/4.3 | Michael Niedermayer | Fri Jun 14 01:50:15 2024 +0200| [75de958c0f0a28d4b3164dd96f813cc2044aef89] | committer: Michael Niedermayer avfilter/vf_deshake_opencl: Ensure that the first iteration initializes the best variables Fixes: CID1452759 Uninitialized scalar va

[FFmpeg-cvslog] avformat/mxfdec: Reorder elements of expression in bisect loop

2024-07-24 Thread Michael Niedermayer
ffmpeg | branch: release/4.3 | Michael Niedermayer | Tue Jul 16 21:31:21 2024 +0200| [4a04c96f7005ec7b1cb2da1b2c094bcb987feca0] | committer: Michael Niedermayer avformat/mxfdec: Reorder elements of expression in bisect loop Fixes: signed integer overflow: 9223372036854775807 - -1 cannot be rep

[FFmpeg-cvslog] avcodec/pnmdec: Use 64bit for input size check

2024-07-24 Thread Michael Niedermayer
ffmpeg | branch: release/4.3 | Michael Niedermayer | Thu Jul 18 21:12:54 2024 +0200| [da2240ccbecdf3fe8df6465ae3de7a1b565a2c68] | committer: Michael Niedermayer avcodec/pnmdec: Use 64bit for input size check Fixes: out of array read Fixes: poc3 Reported-by: VulDB CNA Team Found-by: CookedMelo

[FFmpeg-cvslog] avcodec/utvideoenc: Use unsigned shift to build flags

2024-07-24 Thread Michael Niedermayer
ffmpeg | branch: release/4.3 | Michael Niedermayer | Wed Jun 19 23:55:01 2024 +0200| [4430a979bcb0838e3d47a978b477e81b193eb73d] | committer: Michael Niedermayer avcodec/utvideoenc: Use unsigned shift to build flags Fixes: left shift of 255 by 24 places cannot be represented in type 'int' Fixes

[FFmpeg-cvslog] avcodec/loco: check get_ur_golomb_jpegls() for failure

2024-07-24 Thread Michael Niedermayer
ffmpeg | branch: release/4.3 | Michael Niedermayer | Fri Jul 5 02:21:51 2024 +0200| [271b7ce6f59f040c99b4a02b67c09069b71cba84] | committer: Michael Niedermayer avcodec/loco: check get_ur_golomb_jpegls() for failure Fixes: CID1604400 Overflowed constant Sponsored-by: Sovereign Tech Fund Signe

[FFmpeg-cvslog] avcodec/vc2enc: Fix overflows with storing large values

2024-07-24 Thread Michael Niedermayer
ffmpeg | branch: release/4.3 | Michael Niedermayer | Mon Jun 17 22:43:22 2024 +0200| [2c7d846959a100487d84494a08ca9e9d5647eadb] | committer: Michael Niedermayer avcodec/vc2enc: Fix overflows with storing large values Fixes: left shift of 1431634944 by 2 places cannot be represented in type 'in

[FFmpeg-cvslog] avcodec/mpegvideo_enc: Do not duplicate pictures on shifting

2024-07-24 Thread Michael Niedermayer
ffmpeg | branch: release/4.3 | Michael Niedermayer | Thu Jun 20 00:44:08 2024 +0200| [0e2bff1a88a51ba7a78dd7b067a9eb4551f65656] | committer: Michael Niedermayer avcodec/mpegvideo_enc: Do not duplicate pictures on shifting Fixes: out of array access Fixes: 69098/clusterfuzz-testcase-minimized-

[FFmpeg-cvslog] avcodec/tiff: Check value on positive signed targets

2024-07-24 Thread Michael Niedermayer
ffmpeg | branch: release/4.3 | Michael Niedermayer | Sun Jul 7 20:47:24 2024 +0200| [35be459c27a44e08a39a2e1062edab9e5811ac39] | committer: Michael Niedermayer avcodec/tiff: Check value on positive signed targets Fixes: CID1604593 Overflowed constant Sponsored-by: Sovereign Tech Fund Signed-

[FFmpeg-cvslog] avdevice/dshow_filter: Use wcscpy_s()

2024-07-24 Thread Michael Niedermayer
ffmpeg | branch: release/4.3 | Michael Niedermayer | Mon May 27 01:34:48 2024 +0200| [359893d8291bc9ec3636780170bd0bcbc18ea453] | committer: Michael Niedermayer avdevice/dshow_filter: Use wcscpy_s() Fixes: CID1591929 Copy into fixed size buffer Sponsored-by: Sovereign Tech Fund Reviewed-by: R

[FFmpeg-cvslog] avfilter/vf_bm3d: Dont round MSE2SSE to an integer

2024-07-24 Thread Michael Niedermayer
ffmpeg | branch: release/4.3 | Michael Niedermayer | Thu Jun 13 00:22:10 2024 +0200| [8e35cb8c2288a6103f000f9d9d821e8fea4253c1] | committer: Michael Niedermayer avfilter/vf_bm3d: Dont round MSE2SSE to an integer Fixes: CID1439581 Result is not floating-point Sponsored-by: Sovereign Tech Fund

[FFmpeg-cvslog] avdevice/dshow: Check device_filter_unique_name before use

2024-07-24 Thread Michael Niedermayer
ffmpeg | branch: release/4.3 | Michael Niedermayer | Mon May 27 01:52:24 2024 +0200| [113960bb0297fb6c4ecce7cc1855a54e7f660311] | committer: Michael Niedermayer avdevice/dshow: Check device_filter_unique_name before use Fixes: CID1591931 Explicit null dereferenced Sponsored-by: Sovereign Tech

[FFmpeg-cvslog] avcodec/motion_est: Fix score squaring overflow

2024-07-24 Thread Michael Niedermayer
ffmpeg | branch: release/4.3 | Michael Niedermayer | Fri Jul 5 02:21:55 2024 +0200| [1c349d968cb604f24c68e1a52150d4413e09cf0e] | committer: Michael Niedermayer avcodec/motion_est: Fix score squaring overflow Fixes: CID1604552 Overflowed constant Sponsored-by: Sovereign Tech Fund Signed-off-b

[FFmpeg-cvslog] avcodec/flac_parser: Assert that we do not overrun the link_penalty array

2024-07-24 Thread Michael Niedermayer
ffmpeg | branch: release/4.3 | Michael Niedermayer | Sun May 5 01:51:59 2024 +0200| [37cb93097afb7b8642eac5fd1968947bc509a02a] | committer: Michael Niedermayer avcodec/flac_parser: Assert that we do not overrun the link_penalty array Helps: CID1454676 Out-of-bounds read Sponsored-by: Soverei

[FFmpeg-cvslog] avcodec/loco: Check loco_get_rice() for failure

2024-07-24 Thread Michael Niedermayer
ffmpeg | branch: release/4.3 | Michael Niedermayer | Fri Jul 5 02:21:52 2024 +0200| [c8b26518fc5e36db527fa5a3366b8c90621dc61a] | committer: Michael Niedermayer avcodec/loco: Check loco_get_rice() for failure Fixes: CID1604495 Overflowed constant Sponsored-by: Sovereign Tech Fund Signed-off-b

[FFmpeg-cvslog] avcodec/pixlet: Simplify pfx computation

2024-07-24 Thread Michael Niedermayer
ffmpeg | branch: release/4.3 | Michael Niedermayer | Fri Jul 5 02:21:56 2024 +0200| [2bdb01c8476f55a7e7f0cc89fa8ad18260b26e95] | committer: Michael Niedermayer avcodec/pixlet: Simplify pfx computation Found by reviewing code related to CID1604365 Overflowed constant Sponsored-by: Sovereign T

[FFmpeg-cvslog] avcodec/imm4: check cbphi for error

2024-07-24 Thread Michael Niedermayer
ffmpeg | branch: release/4.3 | Michael Niedermayer | Fri Jul 5 02:21:49 2024 +0200| [1736bfa0885aa28aeffc8feb46fff14f8da99890] | committer: Michael Niedermayer avcodec/imm4: check cbphi for error Fixes: CID1604356 Overflowed constant Fixes: CID1604573 Overflowed constant Sponsored-by: Sovere

[FFmpeg-cvslog] avcodec/iff: Use signed count

2024-07-24 Thread Michael Niedermayer
ffmpeg | branch: release/4.3 | Michael Niedermayer | Fri Jul 5 02:21:48 2024 +0200| [2115efc337d2c0a7f40d3e9949fed7bbbe343512] | committer: Michael Niedermayer avcodec/iff: Use signed count This is more a style fix than a bugfix (CID1604392 Overflowed constant) Sponsored-by: Sovereign Tech F

[FFmpeg-cvslog] avcodec/golomb: Assert that k is in the supported range for get_ur/sr_golomb()

2024-07-24 Thread Michael Niedermayer
ffmpeg | branch: release/4.3 | Michael Niedermayer | Fri Jul 5 02:21:46 2024 +0200| [1fa6ad547432e2bcc7efc37fc4810d041cc37764] | committer: Michael Niedermayer avcodec/golomb: Assert that k is in the supported range for get_ur/sr_golomb() Found by code review related to CID1604563 Overflowed

[FFmpeg-cvslog] avcodec/golomb: Document return for get_ur_golomb_jpegls() and get_sr_golomb_flac()

2024-07-24 Thread Michael Niedermayer
ffmpeg | branch: release/4.3 | Michael Niedermayer | Fri Jul 5 02:21:45 2024 +0200| [dff8c05a14ebca7c7d13bc3cd40706199928db2a] | committer: Michael Niedermayer avcodec/golomb: Document return for get_ur_golomb_jpegls() and get_sr_golomb_flac() Found while reviewing code related to CID1604409

[FFmpeg-cvslog] avcodec/proresenc_kostya: use unsigned alpha for rotation

2024-07-24 Thread Michael Niedermayer
ffmpeg | branch: release/4.3 | Michael Niedermayer | Tue Jun 18 15:48:26 2024 +0200| [ce845325897b411da4687ac41f9a83fd3f7da9c4] | committer: Michael Niedermayer avcodec/proresenc_kostya: use unsigned alpha for rotation Fixes: left shift of negative value -208 Fixes: 69073/clusterfuzz-testcase

[FFmpeg-cvslog] avcodec/dxv: Fix type in get_opcodes()

2024-07-24 Thread Michael Niedermayer
ffmpeg | branch: release/4.3 | Michael Niedermayer | Fri Jul 5 02:21:44 2024 +0200| [55f4161005596dfa7e9934b6dceaf6f8fe3d4f3a] | committer: Michael Niedermayer avcodec/dxv: Fix type in get_opcodes() Found by code review related to CID1604386 Overflowed constant Sponsored-by: Sovereign Tech F

[FFmpeg-cvslog] avformat/rtmppkt: Simplify and deobfuscate amf_tag_skip() slightly

2024-07-24 Thread Michael Niedermayer
ffmpeg | branch: release/4.3 | Michael Niedermayer | Fri Jun 7 23:05:47 2024 +0200| [ec75ce6eded2b6229dfc559c6f3132264e95b44c] | committer: Michael Niedermayer avformat/rtmppkt: Simplify and deobfuscate amf_tag_skip() slightly Found while reviewing: CID1530313 Untrusted loop bound Sponsored-

[FFmpeg-cvslog] avcodec/xsubdec: Check parse_timecode()

2024-07-24 Thread Michael Niedermayer
ffmpeg | branch: release/4.3 | Michael Niedermayer | Fri Jul 5 02:21:42 2024 +0200| [55cce2ab4a05bb2a4e8cf6d5d3e553158bfa2cdd] | committer: Michael Niedermayer avcodec/xsubdec: Check parse_timecode() Fixes: CID1604490 Overflowed constant Sponsored-by: Sovereign Tech Fund Signed-off-by: Micha

[FFmpeg-cvslog] avutil/imgutils: av_image_check_size2() ensure width and height fit in 32bit

2024-07-24 Thread Michael Niedermayer
ffmpeg | branch: release/4.3 | Michael Niedermayer | Wed Jul 10 17:49:56 2024 +0200| [cf564cb8266b7485bef0923c8676e3757919381a] | committer: Michael Niedermayer avutil/imgutils: av_image_check_size2() ensure width and height fit in 32bit width and height > 32bit is not supported and its easier

[FFmpeg-cvslog] avformat/tls_schannel: Initialize ret

2024-07-24 Thread Michael Niedermayer
ffmpeg | branch: release/4.3 | Michael Niedermayer | Sun Jun 9 00:09:24 2024 +0200| [39ba817a49e2e9c0e5a071f27056ec141943505a] | committer: Michael Niedermayer avformat/tls_schannel: Initialize ret Fixes: CID1591881 Uninitialized scalar variable Sponsored-by: Sovereign Tech Fund Signed-off-b

[FFmpeg-cvslog] avformat/rmdec: use 64bit for audio_framesize checks

2024-07-24 Thread Michael Niedermayer
ffmpeg | branch: release/4.3 | Michael Niedermayer | Fri Jun 7 21:57:40 2024 +0200| [6f185c6ee9a9a08d72114e8e238775a4279f5450] | committer: Michael Niedermayer avformat/rmdec: use 64bit for audio_framesize checks It is not entirely clear what would prevent such overflow so even if it is not p

[FFmpeg-cvslog] avutil/hwcontext_d3d11va: correct sizeof IDirect3DSurface9

2024-07-24 Thread Michael Niedermayer
ffmpeg | branch: release/4.3 | Michael Niedermayer | Sun Jun 9 17:47:43 2024 +0200| [cc5694cc02257a94b238949f9bc2541ee58979ab] | committer: Michael Niedermayer avutil/hwcontext_d3d11va: correct sizeof IDirect3DSurface9 Fixes: CID1591944 Wrong sizeof argument Sponsored-by: Sovereign Tech Fund

[FFmpeg-cvslog] avutil/hwcontext_d3d11va: correct sizeof AVD3D11FrameDescriptor

2024-07-24 Thread Michael Niedermayer
ffmpeg | branch: release/4.3 | Michael Niedermayer | Sun Jun 9 17:47:41 2024 +0200| [9893e367864fdc22a7ac94c7bb7fa68eb6e8f765] | committer: Michael Niedermayer avutil/hwcontext_d3d11va: correct sizeof AVD3D11FrameDescriptor Fixes: CID1591909 Wrong sizeof argument Sponsored-by: Sovereign Tech

[FFmpeg-cvslog] avformat/rtsp: Check that lower transport is handled in one of the if()

2024-07-24 Thread Michael Niedermayer
ffmpeg | branch: release/4.3 | Michael Niedermayer | Sat Jun 8 19:43:15 2024 +0200| [b5129a08fdbd384cced5c78dadfde117a771d147] | committer: Michael Niedermayer avformat/rtsp: Check that lower transport is handled in one of the if() Fixes: CID1473554 Uninitialized scalar variable Sponsored-by

[FFmpeg-cvslog] avformat/subfile: Assert that whence is a known case

2024-07-24 Thread Michael Niedermayer
ffmpeg | branch: release/4.3 | Michael Niedermayer | Sat Jun 8 20:46:28 2024 +0200| [3174e73cc53946596bd5bcec9793d55631e53143] | committer: Michael Niedermayer avformat/subfile: Assert that whence is a known case This may help CID1452449 Uninitialized scalar variable Sponsored-by: Sovereign

[FFmpeg-cvslog] avformat/subfile: Merge if into switch()

2024-07-24 Thread Michael Niedermayer
ffmpeg | branch: release/4.3 | Michael Niedermayer | Sat Jun 8 20:45:32 2024 +0200| [20aba0c184eff8300c53aff9204b570453197d4d] | committer: Michael Niedermayer avformat/subfile: Merge if into switch() Found while reviewing CID1452449 Uninitialized scalar variable Sponsored-by: Sovereign Tech

[FFmpeg-cvslog] avformat/rtsp: initialize reply1

2024-07-24 Thread Michael Niedermayer
ffmpeg | branch: release/4.3 | Michael Niedermayer | Sat Jun 8 18:28:49 2024 +0200| [747a3f6999cbdc11b000c17a1f594cfca2c19b5b] | committer: Michael Niedermayer avformat/rtsp: initialize reply1 It seems reply1 is initialized by ff_rtsp_send_cmd() in most cases but there are code paths like "co

[FFmpeg-cvslog] avformat/rtsp: use < 0 for error check

2024-07-24 Thread Michael Niedermayer
ffmpeg | branch: release/4.3 | Michael Niedermayer | Sat Jun 8 18:23:47 2024 +0200| [13807f204b4da55d015fbf0f41d550c2d0446e1c] | committer: Michael Niedermayer avformat/rtsp: use < 0 for error check Found while reviewing CID1473532 Uninitialized scalar variable Sponsored-by: Sovereign Tech F

[FFmpeg-cvslog] avfilter/af_aderivative: Free out on error

2024-07-24 Thread Michael Niedermayer
ffmpeg | branch: release/4.3 | Michael Niedermayer | Sun Jun 9 17:47:46 2024 +0200| [917c2b02c48531424cc49ce706ac55dfdca1a294] | committer: Michael Niedermayer avfilter/af_aderivative: Free out on error Fixes: CID1197065 Resource leak Sponsored-by: Sovereign Tech Fund Signed-off-by: Michael

[FFmpeg-cvslog] avformat/rtpenc_vc2hq: Check sizes

2024-07-24 Thread Michael Niedermayer
ffmpeg | branch: release/4.3 | Michael Niedermayer | Sat Jun 8 10:17:42 2024 +0200| [bf071ff5f1cc1af57f13763c1fe094f193640d39] | committer: Michael Niedermayer avformat/rtpenc_vc2hq: Check sizes Fixes: CID1452585 Untrusted loop bound Sponsored-by: Sovereign Tech Fund Signed-off-by: Michael N

[FFmpeg-cvslog] tools/coverity: Phase 1 study of anti-halicogenic for coverity av_rescale()

2024-07-24 Thread Michael Niedermayer
ffmpeg | branch: release/4.3 | Michael Niedermayer | Mon Jul 1 23:18:47 2024 +0200| [bad037ba50c931c37389db9592f812c7518fd6bb] | committer: Michael Niedermayer tools/coverity: Phase 1 study of anti-halicogenic for coverity av_rescale() Signed-off-by: Michael Niedermayer (cherry picked from c

[FFmpeg-cvslog] avfilter/vf_avgblur: Check plane instead of AVFrame

2024-07-24 Thread Michael Niedermayer
ffmpeg | branch: release/4.3 | Michael Niedermayer | Tue Jun 11 23:43:37 2024 +0200| [86dfa07e767e021944bfff071a250ec67b9737a1] | committer: Michael Niedermayer avfilter/vf_avgblur: Check plane instead of AVFrame Fixes: CID1551694 Use after free (false positive based on assuming that out == i

[FFmpeg-cvslog] avfilter/af_pan: check nb_output_channels before use

2024-07-24 Thread Michael Niedermayer
ffmpeg | branch: release/4.3 | Michael Niedermayer | Mon Jun 10 23:41:07 2024 +0200| [81fbeedd1b27f9bfa767ca87cd00198c32d1302f] | committer: Michael Niedermayer avfilter/af_pan: check nb_output_channels before use Fixes: CID1500281 Out-of-bounds write Fixes: CID1500331 Out-of-bounds write Spo

[FFmpeg-cvslog] cbs_av1: Reject thirty-two zero bits in uvlc code

2024-07-24 Thread Mark Thompson
ffmpeg | branch: release/4.3 | Mark Thompson | Sun Oct 22 19:35:52 2023 +0100| [93c16626b5bddaabf883227efc8d2f02a2030d18] | committer: Michael Niedermayer cbs_av1: Reject thirty-two zero bits in uvlc code The spec allows at least thirty-two zero bits followed by a one to mean 2^32-1, with no c

[FFmpeg-cvslog] avdevice/dshow: Check ICaptureGraphBuilder2_SetFiltergraph() for failure

2024-07-24 Thread Michael Niedermayer
ffmpeg | branch: release/4.3 | Michael Niedermayer | Mon May 27 01:52:25 2024 +0200| [70fd924f31bdfd78053b91a6c9c6ee7cd03d4aa9] | committer: Michael Niedermayer avdevice/dshow: Check ICaptureGraphBuilder2_SetFiltergraph() for failure Fixes: CID1591939 Logically dead code Sponsored-by: Soverei

[FFmpeg-cvslog] avformat/mpeg: Check len in mpegps_probe()

2024-07-24 Thread Michael Niedermayer
ffmpeg | branch: release/4.3 | Michael Niedermayer | Fri Jun 7 00:19:01 2024 +0200| [58213b59705c819663fdfeb56930740ef6a7a551] | committer: Michael Niedermayer avformat/mpeg: Check len in mpegps_probe() Fixes: CID1473590 Untrusted loop bound Sponsored-by: Sovereign Tech Fund Signed-off-by: M

[FFmpeg-cvslog] avformat/rdt: Check pkt_len

2024-07-24 Thread Michael Niedermayer
ffmpeg | branch: release/4.3 | Michael Niedermayer | Fri Jun 7 01:50:00 2024 +0200| [0d1f7739046c14d664f0bcc9da3941a7f6d62ffd] | committer: Michael Niedermayer avformat/rdt: Check pkt_len Fixes: CID1473553 Untrusted loop bound Sponsored-by: Sovereign Tech Fund Signed-off-by: Michael Niederma

[FFmpeg-cvslog] avcodec/mfenc: check IMFSample_ConvertToContiguousBuffer() for failure

2024-07-24 Thread Michael Niedermayer
ffmpeg | branch: release/4.3 | Michael Niedermayer | Mon May 27 01:52:18 2024 +0200| [d6e212d312e02ed9bcefa365102952f607f7352d] | committer: Michael Niedermayer avcodec/mfenc: check IMFSample_ConvertToContiguousBuffer() for failure Fixes: CID1591911 Logically dead code Sponsored-by: Sovereign

[FFmpeg-cvslog] avformat/img2dec: assert no pipe on ts_from_file

2024-07-24 Thread Michael Niedermayer
ffmpeg | branch: release/4.3 | Michael Niedermayer | Wed May 8 04:15:50 2024 +0200| [d8eaf39a72e2d66d011be306adcd3c8305c6c387] | committer: Michael Niedermayer avformat/img2dec: assert no pipe on ts_from_file Help coverity with CID1500302 Uninitialized scalar variable Sponsored-by: Sovereign

[FFmpeg-cvslog] avcodec/vc1_loopfilter: Factor duplicate code in vc1_b_h_intfi_loop_filter()

2024-07-24 Thread Michael Niedermayer
ffmpeg | branch: release/4.3 | Michael Niedermayer | Tue May 24 01:45:44 2022 +0200| [1d553fc50e9f4ebe0e197446c68faf9f22667199] | committer: Michael Niedermayer avcodec/vc1_loopfilter: Factor duplicate code in vc1_b_h_intfi_loop_filter() Fixes: CID1435168 Signed-off-by: Michael Niedermayer (

[FFmpeg-cvslog] avformat/mov: Check edit list for overflow

2024-07-24 Thread Michael Niedermayer
ffmpeg | branch: release/4.3 | Michael Niedermayer | Mon Mar 25 03:13:50 2024 +0100| [c803c8ef60695da1a2b8ecc62b0bc645bf66a704] | committer: Michael Niedermayer avformat/mov: Check edit list for overflow Fixes: 67492/clusterfuzz-testcase-minimized-ffmpeg_dem_MOV_fuzzer-5778297231310848 Fixes:

[FFmpeg-cvslog] avcodec/cbs_jpeg: Try to move the read entity to one side in a test

2024-07-24 Thread Michael Niedermayer
ffmpeg | branch: release/4.3 | Michael Niedermayer | Wed May 1 22:33:14 2024 +0200| [cc8b8889056fd6a7a70a7fa13904aae22a5e8493] | committer: Michael Niedermayer avcodec/cbs_jpeg: Try to move the read entity to one side in a test The checked entity should be alone on one side of the check, this

[FFmpeg-cvslog] fftools/ffmpeg: Check read() for failure

2024-07-24 Thread Michael Niedermayer
ffmpeg | branch: release/4.3 | Michael Niedermayer | Sun Jun 30 22:23:06 2024 +0200| [3eada55c2162a677c4066e6f0d41d58fbe9f6c07] | committer: Michael Niedermayer fftools/ffmpeg: Check read() for failure Fixes: CID1591932 Ignoring number of bytes read Sponsored-by: Sovereign Tech Fund Reviewed-

[FFmpeg-cvslog] swscale/output: Avoid undefined overflow in yuv2rgb_write_full()

2024-07-24 Thread Michael Niedermayer
ffmpeg | branch: release/4.3 | Michael Niedermayer | Sun Jun 16 01:59:23 2024 +0200| [8b56b03028e0b85267e35f3795a48ec49f24ae60] | committer: Michael Niedermayer swscale/output: Avoid undefined overflow in yuv2rgb_write_full() Fixes: signed integer overflow: -140140 * 16525 cannot be represente

[FFmpeg-cvslog] avcodec/targaenc: Allocate space for the palette

2024-07-24 Thread Michael Niedermayer
ffmpeg | branch: release/4.3 | Michael Niedermayer | Sun Jun 16 19:33:02 2024 +0200| [dfb6bd6b08fb097ff06cba9b8c206dc5aa35a349] | committer: Michael Niedermayer avcodec/targaenc: Allocate space for the palette Fixes: out of array access Fixes: 68927/clusterfuzz-testcase-minimized-ffmpeg_AV_CO

[FFmpeg-cvslog] swscale/output: alpha can become negative after scaling, use multiply

2024-07-24 Thread Michael Niedermayer
ffmpeg | branch: release/4.3 | Michael Niedermayer | Sun Jun 16 01:51:22 2024 +0200| [02af99474386137e82bc4c4c2f7642fcf38ba5b5] | committer: Michael Niedermayer swscale/output: alpha can become negative after scaling, use multiply Fixes: left shift of negative value -3245 Fixes: 69047/clusterf

[FFmpeg-cvslog] avcodec/r210enc: Use av_rescale for bitrate

2024-07-24 Thread Michael Niedermayer
ffmpeg | branch: release/4.3 | Michael Niedermayer | Sun Jun 16 23:42:37 2024 +0200| [0258d8302d6c21a7087f90bed0ced93db65304ad] | committer: Michael Niedermayer avcodec/r210enc: Use av_rescale for bitrate Fixes: signed integer overflow: 281612954574848 * 65344 cannot be represented in type 'l

[FFmpeg-cvslog] avcodec/jfdctint_template: Fewer integer anomalies

2024-07-24 Thread Michael Niedermayer
ffmpeg | branch: release/4.3 | Michael Niedermayer | Tue Jun 18 15:48:24 2024 +0200| [da915126bf94712610790ec865688d41b93f0f04] | committer: Michael Niedermayer avcodec/jfdctint_template: Fewer integer anomalies Fixes: signed integer overflow: 105788 * -20995 cannot be represented in type 'in

[FFmpeg-cvslog] avcodec/snowenc: MV limits due to mv_penalty table size

2024-07-24 Thread Michael Niedermayer
ffmpeg | branch: release/4.3 | Michael Niedermayer | Tue Jun 18 15:48:23 2024 +0200| [4c539a8162b9b7541bc06fb12904b0f565e7979f] | committer: Michael Niedermayer avcodec/snowenc: MV limits due to mv_penalty table size Fixes: out of array read Fixes: 69673/clusterfuzz-testcase-minimized-ffmpeg_

[FFmpeg-cvslog] avformat/mxfdec: Check container_ul->desc before use

2024-07-24 Thread Michael Niedermayer
ffmpeg | branch: release/4.3 | Michael Niedermayer | Fri Jun 7 02:32:13 2024 +0200| [744b0f80acf1089ad5084a490d31ee0737994fca] | committer: Michael Niedermayer avformat/mxfdec: Check container_ul->desc before use Fixes: CID1592939 Dereference after null check Sponsored-by: Sovereign Tech Fun

[FFmpeg-cvslog] MAINTAINERS: Update the entries for the release maintainer for FFmpeg

2024-07-24 Thread Michael Niedermayer
ffmpeg | branch: release/4.3 | Michael Niedermayer | Sun Jun 16 22:32:03 2024 +0200| [bd1e6d2af3c4ad362b69036ca6d408ddbf1b2b81] | committer: Michael Niedermayer MAINTAINERS: Update the entries for the release maintainer for FFmpeg Signed-off-by: Michael Niedermayer (cherry picked from commit

[FFmpeg-cvslog] avdevice/dshow: Don't skip audio devices if no video device is present

2024-07-24 Thread Jens Frederich
ffmpeg | branch: master | Jens Frederich | Mon Jul 15 06:51:29 2024 +| [60b1750134963e8326476c4fbae41cea1772ff5b] | committer: Michael Niedermayer avdevice/dshow: Don't skip audio devices if no video device is present The search of the current DirectShow device list has been customized so

[FFmpeg-cvslog] checkasm: Increase the tolerance for ac3_sum_square_butterfly_float

2024-07-24 Thread Martin Storsjö
ffmpeg | branch: master | Martin Storsjö | Wed Jul 24 00:00:15 2024 +0300| [97a708a50792b2323f1402211a0c0612cfc5826f] | committer: Martin Storsjö checkasm: Increase the tolerance for ac3_sum_square_butterfly_float Increase the tolerance from 10 ulp to 11 ulp. This fixes occasional errors for s

[FFmpeg-cvslog] fftools/ffmpeg: prefer real errors over EOF in err_merge()

2024-07-24 Thread Anton Khirnov
ffmpeg | branch: release/6.1 | Anton Khirnov | Tue Jul 23 15:11:08 2024 +0200| [159270e3b2fc51f0d0c65411359a17c15bc520ed] | committer: Anton Khirnov fftools/ffmpeg: prefer real errors over EOF in err_merge() Fixes an issue in 6.1 when reading a corrupted file with -xerror would exit with succe