[FFmpeg-cvslog] avformat/mov: Check that sample_count is allocated in mov_parse_heif_items()

2025-06-25 Thread Michael Niedermayer
ffmpeg | branch: master | Michael Niedermayer | Sat Jun 21 23:15:17 2025 +0200| [0ffe97d9b9e10e88db29d8d910c24ec00ef24edc] | committer: Michael Niedermayer avformat/mov: Check that sample_count is allocated in mov_parse_heif_items() Fixes: NULL pointer dereference Fixes: 416811958

[FFmpeg-cvslog] tools/target_dec_fuzzer: adjust threshold for VP8

2025-06-23 Thread Michael Niedermayer
ffmpeg | branch: master | Michael Niedermayer | Fri Jun 20 00:51:50 2025 +0200| [f06474faf87bd7f4b2e46527d17439f3467cf423] | committer: Michael Niedermayer tools/target_dec_fuzzer: adjust threshold for VP8 Fixes: Timeout Fixes: 416589179/clusterfuzz-testcase-minimized

[FFmpeg-cvslog] avformat/iff: Check nb_channels == 0 in CHNL

2025-06-23 Thread Michael Niedermayer
ffmpeg | branch: master | Michael Niedermayer | Sat Jun 21 02:01:22 2025 +0200| [5b1301004bdade13e3fee22081459e339ddd2637] | committer: Michael Niedermayer avformat/iff: Check nb_channels == 0 in CHNL Fixes: division by 0 Fixes: 418396712/clusterfuzz-testcase-minimized-ffmpeg_dem_IFF_fuzzer

[FFmpeg-cvslog] Add FUNDING.json

2025-06-23 Thread Michael Niedermayer
ffmpeg | branch: master | Michael Niedermayer | Thu Jun 19 20:27:18 2025 +0200| [a8c21a7158fa6d41c332da7ccd203ea4057d4acf] | committer: Michael Niedermayer Add FUNDING.json We have been contacted by Monet du Plessis of the etherium foundation and Natascha Buck (Grants at the Better Internet

[FFmpeg-cvslog] avcodec/osq: Fix signed integer overflow in update_stats()

2025-06-23 Thread Michael Niedermayer
ffmpeg | branch: master | Michael Niedermayer | Tue Jun 17 01:05:54 2025 +0200| [c909ef31be96b6983698c3b01c675de8e5f2637a] | committer: Michael Niedermayer avcodec/osq: Fix signed integer overflow in update_stats() Fixes: negation of -2147483648 cannot be represented in type 'int';

[FFmpeg-cvslog] avcodec/osq: Add note about update_stats() count

2025-06-23 Thread Michael Niedermayer
ffmpeg | branch: master | Michael Niedermayer | Tue Jun 17 02:28:08 2025 +0200| [b587afcb65192c4c4bf88422f6565e5355eaf31e] | committer: Michael Niedermayer avcodec/osq: Add note about update_stats() count It seems this is basically unused and unfinished code Signed-off-by: Michael

[FFmpeg-cvslog] tools/target_dec_fuzzer: Adjust RV60 threshold

2025-06-23 Thread Michael Niedermayer
ffmpeg | branch: master | Michael Niedermayer | Thu Jun 19 02:55:34 2025 +0200| [6e5f47f6d371c9a6f48768eafffd6c79d2a07e1d] | committer: Michael Niedermayer tools/target_dec_fuzzer: Adjust RV60 threshold Fixes: Timeout Fixes: 410324670/clusterfuzz-testcase-minimized

[FFmpeg-cvslog] avcodec/osq: Switch back to av_ceil_log2()

2025-06-23 Thread Michael Niedermayer
ffmpeg | branch: master | Michael Niedermayer | Tue Jun 17 02:31:28 2025 +0200| [a5f861d335491ce2350102b74c7a17f875cad0ed] | committer: Michael Niedermayer avcodec/osq: Switch back to av_ceil_log2() This returns to code closer to prior 56c334d732dbbce43b0c8fc0809ec545b7946832 The prior fixes

[FFmpeg-cvslog] avcodec/osq: Request a coding mode 2 sample

2025-06-23 Thread Michael Niedermayer
ffmpeg | branch: master | Michael Niedermayer | Tue Jun 17 22:31:17 2025 +0200| [f8e30d9eebd25d6ed2db744940f1a6d33534ef7b] | committer: Michael Niedermayer avcodec/osq: Request a coding mode 2 sample Signed-off-by: Michael Niedermayer > http://git.videolan.org/gitweb.cgi/ffmpeg.git

[FFmpeg-cvslog] avcodec/vorbisdec: Dont treat overread as error

2025-06-22 Thread Michael Niedermayer
ffmpeg | branch: release/7.1 | Michael Niedermayer | Sun Apr 6 16:49:31 2025 +0200| [7c068e5550356f5b25c3f8e50e91c6f8c020c2d5] | committer: Michael Niedermayer avcodec/vorbisdec: Dont treat overread as error This differs from libvorbis by stddev:2.44 PSNR: 88.58 MAXDIFF: 41 bytes

[FFmpeg-cvslog] avformat/avidec: Ignore duplicate GAB2

2025-06-22 Thread Michael Niedermayer
ffmpeg | branch: release/7.1 | Michael Niedermayer | Sat May 10 01:55:27 2025 +0200| [6c0ec7b61dfee40df19f27e8cfdacc39d501125f] | committer: Michael Niedermayer avformat/avidec: Ignore duplicate GAB2 Fixes: memleak Fixes: 398401912/clusterfuzz-testcase-minimized-ffmpeg_dem_AVI_fuzzer

[FFmpeg-cvslog] swscale/output: Fix integer overflow in yuv2gbrp_full_X_c()

2025-06-22 Thread Michael Niedermayer
ffmpeg | branch: release/7.1 | Michael Niedermayer | Tue Feb 4 03:58:44 2025 +0100| [e5350ef107efa148311af8e8c727a9330f55] | committer: Michael Niedermayer swscale/output: Fix integer overflow in yuv2gbrp_full_X_c() Fixes: signed integer overflow: 1966895953 + 210305024 cannot be

[FFmpeg-cvslog] avformat/imf_cpl: fix indention after previous commit

2025-06-22 Thread Michael Niedermayer
ffmpeg | branch: release/7.1 | Michael Niedermayer | Sat May 10 23:55:24 2025 +0200| [f9a3e1ac198184c6b6838fb1bab27428f53e46c1] | committer: Michael Niedermayer avformat/imf_cpl: fix indention after previous commit (cherry picked from commit d28bec8c4d1bcab3760463f501e14e51fd7b28c1) Signed

[FFmpeg-cvslog] avcodec/osq: avoid undefined negation

2025-06-22 Thread Michael Niedermayer
ffmpeg | branch: release/7.1 | Michael Niedermayer | Tue Feb 4 03:58:45 2025 +0100| [2fa3801507023e41110605774b6a91d7ca39198e] | committer: Michael Niedermayer avcodec/osq: avoid undefined negation Fixes: negation of -2147483648 cannot be represented in type 'int32_t' (aka '

[FFmpeg-cvslog] avcodec/takdec: Check remaining space for first predictors

2025-06-22 Thread Michael Niedermayer
ffmpeg | branch: release/7.1 | Michael Niedermayer | Sun May 11 23:09:07 2025 +0200| [3a418442dca1b9bcab98f03ba6f09d6b1bec8542] | committer: Michael Niedermayer avcodec/takdec: Check remaining space for first predictors Fixes: Timeout Fixes: 403673829/clusterfuzz-testcase-minimized

[FFmpeg-cvslog] Revert "avformat/mpegts: update stream info when PMT ES stream_type changes"

2025-06-22 Thread Michael Niedermayer
ffmpeg | branch: release/7.1 | Michael Niedermayer | Mon Jun 9 13:29:29 2025 +0200| [937051872de89676db882275d66f36b737b1c938] | committer: Michael Niedermayer Revert "avformat/mpegts: update stream info when PMT ES stream_type changes" This fixes mixing up contexts, use of uni

[FFmpeg-cvslog] avcodec/svq3: Check there are bits left before decompression

2025-06-22 Thread Michael Niedermayer
ffmpeg | branch: release/7.1 | Michael Niedermayer | Sun May 11 01:35:29 2025 +0200| [1bd79545eea716ea18c84846141fca86412c7aa5] | committer: Michael Niedermayer avcodec/svq3: Check there are bits left before decompression Fixes: out of array read Fixes: 402587670/clusterfuzz-testcase

[FFmpeg-cvslog] avcodec/h264_mb: Fix tmp_cr for arm

2025-06-22 Thread Michael Niedermayer
ffmpeg | branch: release/7.1 | Michael Niedermayer | Wed Apr 16 02:25:00 2025 +0200| [9ddab572c0bae2cbde7f15f2c56911e8a48dea3b] | committer: Michael Niedermayer avcodec/h264_mb: Fix tmp_cr for arm When decoding a bitstream with weighted-bipred enabled, the results on ARM and x86 platforms may

[FFmpeg-cvslog] avformat/hls: add fmp4 to allowed_extensions

2025-06-22 Thread Michael Niedermayer
ffmpeg | branch: release/7.1 | Michael Niedermayer | Sun Apr 6 12:47:34 2025 +0200| [84e237a58e7887b621b4264d57cd59288019d7ee] | committer: Michael Niedermayer avformat/hls: add fmp4 to allowed_extensions Fixes: yt-dlp/issues/12700 Signed-off-by: Michael Niedermayer (cherry picked from

[FFmpeg-cvslog] avcodec/hevc/ps: Fix dependant layer id check

2025-06-22 Thread Michael Niedermayer
ffmpeg | branch: release/7.1 | Michael Niedermayer | Thu May 8 23:46:04 2025 +0200| [dd21a1462e0846bd892b4089a84b6bd946c27bcc] | committer: Michael Niedermayer avcodec/hevc/ps: Fix dependant layer id check Fixes: shift exponent 49 is too large for 32-bit type 'int' Fixes:

[FFmpeg-cvslog] avformat/matroskadec: check that channels fit in signed 32bit int

2025-06-22 Thread Michael Niedermayer
ffmpeg | branch: release/7.1 | Michael Niedermayer | Sun May 11 23:18:19 2025 +0200| [ebcd40e701a194edca5bd2f4a8e5262aa6ab1841] | committer: Michael Niedermayer avformat/matroskadec: check that channels fit in signed 32bit int Fixes: signed integer overflow: -1384566925600903168 * 16 cannot

[FFmpeg-cvslog] postproc/postprocess_template: Fix reading uninitialized pixels in dering_C()

2025-06-22 Thread Michael Niedermayer
ffmpeg | branch: release/7.1 | Michael Niedermayer | Tue Apr 22 03:35:31 2025 +0200| [0b7e43fb17b59668ad7e6838b066790e1d299647] | committer: Michael Niedermayer postproc/postprocess_template: Fix reading uninitialized pixels in dering_C() This issue was found through the new blocktest Signed

[FFmpeg-cvslog] avformat/hls: Add ec3 to allowed_extensions

2025-06-22 Thread Michael Niedermayer
ffmpeg | branch: release/7.1 | Michael Niedermayer | Sun Apr 6 12:43:12 2025 +0200| [f2d135332be9ce4f8ba190f18c9ea667675c7c3b] | committer: Michael Niedermayer avformat/hls: Add ec3 to allowed_extensions Fixes part of Ticket11435 Fixes: Elisa Viihde (Finnish online recording service) Signed

[FFmpeg-cvslog] avformat/hls: Split allowed_segment_extensions off allowed_extensions

2025-06-22 Thread Michael Niedermayer
ffmpeg | branch: release/7.1 | Michael Niedermayer | Wed Apr 30 01:37:27 2025 +0200| [56e100a799ac25dddc42bda69588833c44a6581c] | committer: Michael Niedermayer avformat/hls: Split allowed_segment_extensions off allowed_extensions This allows the user to set only the one that is needed to ALL

[FFmpeg-cvslog] avcodec/sonic: Check num_taps

2025-06-22 Thread Michael Niedermayer
ffmpeg | branch: release/7.1 | Michael Niedermayer | Sun May 11 01:08:06 2025 +0200| [534c87eb242bf3dfb221945289d60c729464802c] | committer: Michael Niedermayer avcodec/sonic: Check num_taps The encoder uses max 128 taps, which is quiet a lot already If work is done to improve sonic, it will

[FFmpeg-cvslog] avformat/imf_cpl: do not continue looping forever

2025-06-22 Thread Michael Niedermayer
ffmpeg | branch: release/7.1 | Michael Niedermayer | Sat May 10 23:52:57 2025 +0200| [72d65a3a69cc5ddb5166118d9342b7fb94a12e2b] | committer: Michael Niedermayer avformat/imf_cpl: do not continue looping forever Fixes: infinite loop Fixes: 401658595/clusterfuzz-testcase-minimized

[FFmpeg-cvslog] avformat/mov: reject negative ELST durations

2025-06-22 Thread Michael Niedermayer
ffmpeg | branch: release/7.1 | Michael Niedermayer | Sat May 10 23:39:53 2025 +0200| [2ac90a049c8a4a8fbb5028e6bcbc3f930671bd3f] | committer: Michael Niedermayer avformat/mov: reject negative ELST durations Fixes: multiple integer overflows Fixes: 401016767/clusterfuzz-testcase-minimized

[FFmpeg-cvslog] MAINTAINERS: Add entry for samples-request

2025-06-22 Thread Michael Niedermayer
ffmpeg | branch: release/7.1 | Michael Niedermayer | Sun May 11 22:05:07 2025 +0200| [d432d24777874cb742b3463c112d74286ca702b3] | committer: Michael Niedermayer MAINTAINERS: Add entry for samples-request This is based on discussion with the GA and its simply the people who have done or tried

[FFmpeg-cvslog] avformat/iff: Check nb_channels == 0 in MHDR

2025-06-22 Thread Michael Niedermayer
ffmpeg | branch: release/7.1 | Michael Niedermayer | Thu May 8 23:10:52 2025 +0200| [6fb3c736a60ee1323957124302538867303c490c] | committer: Michael Niedermayer avformat/iff: Check nb_channels == 0 in MHDR Fixes: division by 0 Fixes: 395163171/clusterfuzz-testcase-minimized

[FFmpeg-cvslog] avformat/hls: Add cmfv and cmfa to allowed_extensions

2025-06-22 Thread Michael Niedermayer
ffmpeg | branch: release/7.1 | Michael Niedermayer | Sun Apr 6 12:30:04 2025 +0200| [eb922deff1841e6d3a8367b61e3e4d69dcc5fa1b] | committer: Michael Niedermayer avformat/hls: Add cmfv and cmfa to allowed_extensions Fixes: www.nicovideo.jp Fixes: Ticket11526 Signed-off-by: Michael Niedermayer

[FFmpeg-cvslog] tests/fate/filter-video: Fix dependancy for codecview

2025-06-22 Thread Michael Niedermayer
ffmpeg | branch: release/7.1 | Michael Niedermayer | Mon May 5 19:53:57 2025 +0200| [6786f8f038bdcf5906e720f422ac8cf5b4a400c8] | committer: Michael Niedermayer tests/fate/filter-video: Fix dependancy for codecview Signed-off-by: Michael Niedermayer (cherry picked from commit

[FFmpeg-cvslog] avformat/hls: Fix flash1.bogulus.cfd support

2025-06-22 Thread Michael Niedermayer
ffmpeg | branch: release/7.1 | Michael Niedermayer | Wed Apr 30 01:05:18 2025 +0200| [6153d693353540eb656705ebf84e33fdd3a5efc0] | committer: Michael Niedermayer avformat/hls: Fix flash1.bogulus.cfd support Signed-off-by: Michael Niedermayer (cherry picked from commit

[FFmpeg-cvslog] libpostproc: check minimum size

2025-06-22 Thread Michael Niedermayer
ffmpeg | branch: release/7.1 | Michael Niedermayer | Thu May 1 21:20:31 2025 +0200| [ba06c473ba2e495e68a8cfab781eed257e76e470] | committer: Michael Niedermayer libpostproc: check minimum size Signed-off-by: Michael Niedermayer (cherry picked from commit

[FFmpeg-cvslog] postproc/postprocess_template: fix dering with a 16x16 image

2025-06-22 Thread Michael Niedermayer
ffmpeg | branch: release/7.1 | Michael Niedermayer | Thu May 1 21:50:13 2025 +0200| [2f0af494b6c8dc564821c08bc7b131721ec07bcf] | committer: Michael Niedermayer postproc/postprocess_template: fix dering with a 16x16 image Signed-off-by: Michael Niedermayer (cherry picked from commit

[FFmpeg-cvslog] avformat/hls: Fix Youtube AAC

2025-06-22 Thread Michael Niedermayer
ffmpeg | branch: release/7.1 | Michael Niedermayer | Sun Apr 6 18:52:05 2025 +0200| [b8eb5f0cbd7a258c2f2197c1a7d86ca5ab69be51] | committer: Michael Niedermayer avformat/hls: Fix Youtube AAC Fixes: Ticket11435 Fixes: yt-dlp -f 234+270 https://www.youtube.com/live/l8PMl7tUDIE Signed-off-by

[FFmpeg-cvslog] postproc/postprocess_template: fix handling of first row of dering_C

2025-06-22 Thread Michael Niedermayer
ffmpeg | branch: release/7.1 | Michael Niedermayer | Tue Apr 22 21:04:37 2025 +0200| [64911ffc20b78683d19e61be63b60de91d945685] | committer: Michael Niedermayer postproc/postprocess_template: fix handling of first row of dering_C Signed-off-by: Michael Niedermayer (cherry picked from commit

[FFmpeg-cvslog] configure: Clearer documentation for "disable-safe-bitstream-reader"

2025-06-22 Thread Michael Niedermayer
ffmpeg | branch: release/7.1 | Michael Niedermayer | Mon Mar 24 02:57:46 2025 +0100| [d1cef18c5cacd3af19c72e73581642b82b7e6865] | committer: Michael Niedermayer configure: Clearer documentation for "disable-safe-bitstream-reader" Signed-off-by: Michael Niedermayer (cherry picked f

[FFmpeg-cvslog] doc: replace http/git by https urls

2025-06-22 Thread Michael Niedermayer
ffmpeg | branch: release/7.1 | Michael Niedermayer | Tue Apr 1 02:00:41 2025 +0200| [e77b52b6cde5e7474439797b40fb1cad6085515b] | committer: Michael Niedermayer doc: replace http/git by https urls These are more secure Reviewed-by: Gyan Doshi Signed-off-by: Michael Niedermayer (cherry

[FFmpeg-cvslog] avformat/dhav: Do not evaluate avio_size() multiple times

2025-06-07 Thread Michael Niedermayer
ffmpeg | branch: master | Michael Niedermayer | Sat Jun 7 01:12:20 2025 +0200| [21fd1b5ba5fc6f2d7a13d97b056c615b1e237558] | committer: Michael Niedermayer avformat/dhav: Do not evaluate avio_size() multiple times Code like FFMIN(MAX_DURATION_BUFFER_SIZE, avio_size(s->pb)) is not safe

[FFmpeg-cvslog] tests/fate/mov: Add bitexact for fate-mov-mp4-frag-flush

2025-06-06 Thread Michael Niedermayer
ffmpeg | branch: master | Michael Niedermayer | Fri Jun 6 02:45:58 2025 +0200| [453ae55d63dd60d20cf9c998dc4f54cc79a5816c] | committer: Michael Niedermayer tests/fate/mov: Add bitexact for fate-mov-mp4-frag-flush Signed-off-by: Michael Niedermayer > http://git.videolan.org/gitweb.

[FFmpeg-cvslog] Revert "ogg/vorbis: implement header packet skip in chained ogg bitstreams."

2025-05-30 Thread Michael Niedermayer
ffmpeg | branch: master | Michael Niedermayer | Sat May 31 02:22:37 2025 +0200| [848ceb1329cb6102df49379430b277dbb3f07569] | committer: Michael Niedermayer Revert "ogg/vorbis: implement header packet skip in chained ogg bitstreams." non flat extradata is problematic and was

[FFmpeg-cvslog] avcodec/ffv1enc_template: Fix remaining space check

2025-05-30 Thread Michael Niedermayer
ffmpeg | branch: master | Michael Niedermayer | Wed May 14 00:15:41 2025 +0200| [67040773dc8c54f8df1a034cb33b1cb4117a8fd3] | committer: Michael Niedermayer avcodec/ffv1enc_template: Fix remaining space check Fixes: Assertion sc->slice_coding_mode == 0 failed at libavcodec/ffv1enc.c:1667 Fi

[FFmpeg-cvslog] avcodec/hevc/hevcdec: Check num_entry_point_offsets

2025-05-30 Thread Michael Niedermayer
ffmpeg | branch: master | Michael Niedermayer | Thu May 8 23:57:33 2025 +0200| [791a333a0ea5aeee1bea12065b407ba442ac59b4] | committer: Michael Niedermayer avcodec/hevc/hevcdec: Check num_entry_point_offsets The code uses int, unsigned int and uint16_t to store num_entry_point_offsets This

[FFmpeg-cvslog] avcodec/speexdec: Pass and check remaining packets to decode functions

2025-05-30 Thread Michael Niedermayer
ffmpeg | branch: master | Michael Niedermayer | Thu May 8 16:55:13 2025 +0200| [f6986e75be87f512f65d64ac91ba19d505a8d210] | committer: Michael Niedermayer avcodec/speexdec: Pass and check remaining packets to decode functions Fixes: out of array access Fixes: 394638693/clusterfuzz-testcase

[FFmpeg-cvslog] Makefile: Split ALLFFLIBS

2025-05-26 Thread Michael Niedermayer
ffmpeg | branch: master | Michael Niedermayer | Fri May 23 00:49:44 2025 +0200| [9d229440ace1521620f8d1cead52c68c61630353] | committer: Michael Niedermayer Makefile: Split ALLFFLIBS This matches other lists and reduces conflicts between patches Signed-off-by: Michael Niedermayer > h

[FFmpeg-cvslog] avformat/mpeg: Check an avio_read() for failure

2025-05-16 Thread Michael Niedermayer
ffmpeg | branch: release/4.2 | Michael Niedermayer | Sun Aug 4 21:27:44 2024 +0200| [fc9f06b284d3ed47b25d05d2b26121431cf92a16] | committer: Michael Niedermayer avformat/mpeg: Check an avio_read() for failure Fixes: use-of-uninitialized-value Fixes: 70849/clusterfuzz-testcase-minimized

[FFmpeg-cvslog] avcodec/sonic: Check num_taps

2025-05-16 Thread Michael Niedermayer
ffmpeg | branch: release/4.2 | Michael Niedermayer | Sun May 11 01:08:06 2025 +0200| [abd06f81c89a693000c241e1a5955962fcb25741] | committer: Michael Niedermayer avcodec/sonic: Check num_taps The encoder uses max 128 taps, which is quiet a lot already If work is done to improve sonic, it will

[FFmpeg-cvslog] avformat/wtvdec: Initialize buf

2025-05-16 Thread Michael Niedermayer
ffmpeg | branch: release/4.2 | Michael Niedermayer | Thu Dec 26 02:53:45 2024 +0100| [abb4a151efd5486d9a819bf7f283212662807ab9] | committer: Michael Niedermayer avformat/wtvdec: Initialize buf ff_parse_mpeg2_descriptor() reads over what is initialized Fixes: use of uninitialized memory Fixes

[FFmpeg-cvslog] avfilter/vf_tonemap_opencl: Dereference after NULL check

2025-05-16 Thread Michael Niedermayer
ffmpeg | branch: release/4.2 | Michael Niedermayer | Wed Jul 10 23:47:46 2024 +0200| [92625e05fe2bd13211b1aa8a1caeb1ab760de068] | committer: Michael Niedermayer avfilter/vf_tonemap_opencl: Dereference after NULL check Fixes: CID1437472 Dereference before null check Sponsored-by: Sovereign

[FFmpeg-cvslog] avcodec/svq3: Check for minimum size input

2025-05-16 Thread Michael Niedermayer
ffmpeg | branch: release/4.2 | Michael Niedermayer | Sun Sep 22 20:31:58 2024 +0200| [a07629c6f5be200cd47d9d8cb774438622570bf9] | committer: Michael Niedermayer avcodec/svq3: Check for minimum size input Fixes: Timeout Fixes: 71295/clusterfuzz-testcase-minimized

[FFmpeg-cvslog] avformat/lmlm4: Eliminate some AVERROR(EIO)

2025-05-16 Thread Michael Niedermayer
ffmpeg | branch: release/4.2 | Michael Niedermayer | Sat Jul 13 09:16:48 2024 +0200| [f19fa106434d37ca54cb4482af21f53176853045] | committer: Michael Niedermayer avformat/lmlm4: Eliminate some AVERROR(EIO) Found by code review related to CID732224 Overflowed constant Sponsored-by: Sovereign

[FFmpeg-cvslog] avcodec/hapdec: Clear tex buffer

2025-05-16 Thread Michael Niedermayer
ffmpeg | branch: release/4.2 | Michael Niedermayer | Sun Aug 11 23:15:32 2024 +0200| [66402ac52ebef9fd07cab8bd728b1d6cdf59d69f] | committer: Michael Niedermayer avcodec/hapdec: Clear tex buffer The code following makes no attempt to initialize all of the buffer Fixes: use of uninitialized

[FFmpeg-cvslog] configure: Clearer documentation for "disable-safe-bitstream-reader"

2025-05-16 Thread Michael Niedermayer
ffmpeg | branch: release/4.2 | Michael Niedermayer | Mon Mar 24 02:57:46 2025 +0100| [237e8778839d281254c680787c50f2713d446dc0] | committer: Michael Niedermayer configure: Clearer documentation for "disable-safe-bitstream-reader" Signed-off-by: Michael Niedermayer (cherry picked f

[FFmpeg-cvslog] avformat/rpl: Fix check for negative values

2025-05-16 Thread Michael Niedermayer
ffmpeg | branch: release/4.2 | Michael Niedermayer | Mon Nov 18 04:09:11 2024 +0100| [72c8f46cb0b6ee0b3097c5b0efd264b214b1bb95] | committer: Michael Niedermayer avformat/rpl: Fix check for negative values Fixes: signed integer overflow: 10 * -192326792533340 cannot be represented in type

[FFmpeg-cvslog] avformat/vividas: Check avio_read() for failure

2025-05-16 Thread Michael Niedermayer
ffmpeg | branch: release/4.2 | Michael Niedermayer | Sun Nov 3 20:54:29 2024 +0100| [f9eaf66e26fd2e484fbed170610b644c8c9870d4] | committer: Michael Niedermayer avformat/vividas: Check avio_read() for failure Fixes: use of uninitialized value (untested) Fixes: 42537627/clusterfuzz-testcase

[FFmpeg-cvslog] avformat/mov: reject negative ELST durations

2025-05-16 Thread Michael Niedermayer
ffmpeg | branch: release/4.2 | Michael Niedermayer | Sat May 10 23:39:53 2025 +0200| [329cd64a24330c28a315b5ef427f6e11a5a28531] | committer: Michael Niedermayer avformat/mov: reject negative ELST durations Fixes: multiple integer overflows Fixes: 401016767/clusterfuzz-testcase-minimized

[FFmpeg-cvslog] avcodec/takdec: Check remaining space for first predictors

2025-05-16 Thread Michael Niedermayer
ffmpeg | branch: release/4.2 | Michael Niedermayer | Sun May 11 23:09:07 2025 +0200| [9ae2d3646ba71ff2f10ec2f202a8f4b130d550e9] | committer: Michael Niedermayer avcodec/takdec: Check remaining space for first predictors Fixes: Timeout Fixes: 403673829/clusterfuzz-testcase-minimized

[FFmpeg-cvslog] Update for 4.2.11

2025-05-16 Thread Michael Niedermayer
ffmpeg | branch: release/4.2 | Michael Niedermayer | Fri May 16 03:08:43 2025 +0200| [e98a6be89b5554621ece683c824c475cc44b2195] | committer: Michael Niedermayer Update for 4.2.11 Signed-off-by: Michael Niedermayer > http://git.videolan.org/gitweb.cgi/ffmpeg.git/?a=commi

[FFmpeg-cvslog] libpostproc: check minimum size

2025-05-16 Thread Michael Niedermayer
ffmpeg | branch: release/4.2 | Michael Niedermayer | Thu May 1 21:20:31 2025 +0200| [d553897a10dfcb5886fb7a656c5dce0c076ceff0] | committer: Michael Niedermayer libpostproc: check minimum size Signed-off-by: Michael Niedermayer (cherry picked from commit

[FFmpeg-cvslog] avcodec/h264_mb: Fix tmp_cr for arm

2025-05-16 Thread Michael Niedermayer
ffmpeg | branch: release/4.2 | Michael Niedermayer | Wed Apr 16 02:25:00 2025 +0200| [c52f0d2e0f779bd129b697b98591a1e35985e9fb] | committer: Michael Niedermayer avcodec/h264_mb: Fix tmp_cr for arm When decoding a bitstream with weighted-bipred enabled, the results on ARM and x86 platforms may

[FFmpeg-cvslog] doc: replace http/git by https urls

2025-05-16 Thread Michael Niedermayer
ffmpeg | branch: release/4.2 | Michael Niedermayer | Tue Apr 1 02:00:41 2025 +0200| [3c34ce7cfe71891dcab57c6a75af05b30ab5d1d0] | committer: Michael Niedermayer doc: replace http/git by https urls These are more secure Reviewed-by: Gyan Doshi Signed-off-by: Michael Niedermayer (cherry

[FFmpeg-cvslog] avcodec/vorbisdec: Dont treat overread as error

2025-05-16 Thread Michael Niedermayer
ffmpeg | branch: release/4.2 | Michael Niedermayer | Sun Apr 6 16:49:31 2025 +0200| [fef450f3c5a22b3a2d91c73a7489fd3a2afaa9c7] | committer: Michael Niedermayer avcodec/vorbisdec: Dont treat overread as error This differs from libvorbis by stddev:2.44 PSNR: 88.58 MAXDIFF: 41 bytes

[FFmpeg-cvslog] avformat/hls: add fmp4 to allowed_extensions

2025-05-16 Thread Michael Niedermayer
ffmpeg | branch: release/4.2 | Michael Niedermayer | Sun Apr 6 12:47:34 2025 +0200| [47d7bd31a9f57897adda999020328886951dcc64] | committer: Michael Niedermayer avformat/hls: add fmp4 to allowed_extensions Fixes: yt-dlp/issues/12700 Signed-off-by: Michael Niedermayer (cherry picked from

[FFmpeg-cvslog] avformat/hls: Add cmfv and cmfa to allowed_extensions

2025-05-16 Thread Michael Niedermayer
ffmpeg | branch: release/4.2 | Michael Niedermayer | Sun Apr 6 12:30:04 2025 +0200| [9dd7ab049f550ec21959951ffee5e4c3a08a83d0] | committer: Michael Niedermayer avformat/hls: Add cmfv and cmfa to allowed_extensions Fixes: www.nicovideo.jp Fixes: Ticket11526 Signed-off-by: Michael Niedermayer

[FFmpeg-cvslog] avformat/hls: Add ec3 to allowed_extensions

2025-05-16 Thread Michael Niedermayer
ffmpeg | branch: release/4.2 | Michael Niedermayer | Sun Apr 6 12:43:12 2025 +0200| [b5657755b5e550834eb28bfd8216e976585a8811] | committer: Michael Niedermayer avformat/hls: Add ec3 to allowed_extensions Fixes part of Ticket11435 Fixes: Elisa Viihde (Finnish online recording service) Signed

[FFmpeg-cvslog] swscale/output: Fix integer overflow in yuv2gbrp_full_X_c()

2025-05-16 Thread Michael Niedermayer
ffmpeg | branch: release/4.2 | Michael Niedermayer | Tue Feb 4 03:58:44 2025 +0100| [b3f9eac35af73d79ae5f21f48adfd1ce5750d406] | committer: Michael Niedermayer swscale/output: Fix integer overflow in yuv2gbrp_full_X_c() Fixes: signed integer overflow: 1966895953 + 210305024 cannot be

[FFmpeg-cvslog] avformat/mxfdec: Check edit unit for overflow in mxf_set_current_edit_unit()

2025-05-16 Thread Michael Niedermayer
ffmpeg | branch: release/4.2 | Michael Niedermayer | Wed Feb 5 03:47:52 2025 +0100| [2ad73fc12c270195a06d19dcfdd1576896aeeffa] | committer: Michael Niedermayer avformat/mxfdec: Check edit unit for overflow in mxf_set_current_edit_unit() Fixes: signed integer overflow: 9223372036854775807 + 1

[FFmpeg-cvslog] avformat/mlvdec: fix size checks

2025-05-16 Thread Michael Niedermayer
ffmpeg | branch: release/4.2 | Michael Niedermayer | Fri Feb 7 02:33:21 2025 +0100| [b847a91cd0298650d5bf3a20791a95d0745853a4] | committer: Michael Niedermayer avformat/mlvdec: fix size checks Fixes: heap-buffer-overflow Fixes: 391962476/clusterfuzz-testcase-minimized-ffmpeg_dem_MLV_fuzzer

[FFmpeg-cvslog] avcodec/cbs_vp9: Initialize VP9RawSuperframeIndex

2025-05-16 Thread Michael Niedermayer
ffmpeg | branch: release/4.2 | Michael Niedermayer | Wed Jan 1 05:03:08 2025 +0100| [e2aac02c486d68000dfce499da90660455d66755] | committer: Michael Niedermayer avcodec/cbs_vp9: Initialize VP9RawSuperframeIndex Fixes: use-of-uninitialized-value Fixes: 70907/clusterfuzz-testcase-minimized

[FFmpeg-cvslog] avformat/ipmovie: Check signature_buffer read

2025-05-16 Thread Michael Niedermayer
ffmpeg | branch: release/4.2 | Michael Niedermayer | Thu Dec 26 03:07:51 2024 +0100| [f8fda20ba6f8370f93dbf1feac54728c720717a8] | committer: Michael Niedermayer avformat/ipmovie: Check signature_buffer read Fixes: use of uninitilaized data Fixes: 385167047/clusterfuzz-testcase-minimized

[FFmpeg-cvslog] avformat/mxfdec: Check avio_read() success in mxf_decrypt_triplet()

2025-05-16 Thread Michael Niedermayer
ffmpeg | branch: release/4.2 | Michael Niedermayer | Mon Sep 23 20:05:37 2024 +0200| [6b4205c95e78ea2f289b31297d8ed705a93807c2] | committer: Michael Niedermayer avformat/mxfdec: Check avio_read() success in mxf_decrypt_triplet() Fixes: Use of uninitialized memory Fixes: 71444/clusterfuzz

[FFmpeg-cvslog] avformat/iff: Check that we have a stream in read_dst_frame()

2025-05-16 Thread Michael Niedermayer
ffmpeg | branch: release/4.2 | Michael Niedermayer | Sun Feb 9 01:28:17 2025 +0100| [1e0f85a54d6f5759546d4e7730a15e9646698fe1] | committer: Michael Niedermayer avformat/iff: Check that we have a stream in read_dst_frame() Fixes: null pointer dereference Fixes: 385644864/clusterfuzz-testcase

[FFmpeg-cvslog] avcodec/h263dec: Check against previous dimensions instead of coded

2025-05-16 Thread Michael Niedermayer
ffmpeg | branch: release/4.2 | Michael Niedermayer | Thu Jan 30 02:28:32 2025 +0100| [9d5b9673257e69671e2d8a983a4534f20255e856] | committer: Michael Niedermayer avcodec/h263dec: Check against previous dimensions instead of coded Fixes: out of array access Fixes: crash

[FFmpeg-cvslog] avformat/rmdec: check that buf if completely filled

2025-05-16 Thread Michael Niedermayer
ffmpeg | branch: release/4.2 | Michael Niedermayer | Fri Aug 16 14:47:42 2024 +0200| [12c9288d4769815440d2969e1645a5293c9e0386] | committer: Michael Niedermayer avformat/rmdec: check that buf if completely filled Fixes: use of uninitialized value Fixes: 70988/clusterfuzz-testcase-minimized

[FFmpeg-cvslog] avcodec/huffyuvdec: Initialize whole output for decode_gray_bitstream()

2025-05-16 Thread Michael Niedermayer
ffmpeg | branch: release/4.2 | Michael Niedermayer | Sat Nov 30 01:48:22 2024 +0100| [c5fac74428c3a2a662cc049507d47be2152723f4] | committer: Michael Niedermayer avcodec/huffyuvdec: Initialize whole output for decode_gray_bitstream() Fixes: use of uninitialized memory Fixes: 375286238

[FFmpeg-cvslog] avformat/vqf: Check avio_read() in add_metadata()

2025-05-16 Thread Michael Niedermayer
ffmpeg | branch: release/4.2 | Michael Niedermayer | Thu Dec 26 01:46:49 2024 +0100| [a4c09cf37a7038fc289c7255bd2f32d4ba6c4ac9] | committer: Michael Niedermayer avformat/vqf: Check avio_read() in add_metadata() Fixes: use of uninitialized data Fixes: 383825642/clusterfuzz-testcase-minimized

[FFmpeg-cvslog] avcodec/vc1dec: Clear block_index in vc1_decode_reset()

2025-05-16 Thread Michael Niedermayer
ffmpeg | branch: release/4.2 | Michael Niedermayer | Sun Dec 1 23:30:55 2024 +0100| [977ced332389ce5f2c86c14fd1ae99871ecbbc82] | committer: Michael Niedermayer avcodec/vc1dec: Clear block_index in vc1_decode_reset() Fixes: 377965565/clusterfuzz-testcase-minimized

[FFmpeg-cvslog] avutil/avstring: dont mess with NULL pointers in av_match_list()

2025-05-16 Thread Michael Niedermayer
ffmpeg | branch: release/4.2 | Michael Niedermayer | Wed Jan 15 03:30:21 2025 +0100| [a6599d510869b46fc1d7cb34b6de0da6f1771ba1] | committer: Michael Niedermayer avutil/avstring: dont mess with NULL pointers in av_match_list() Fixes: applying zero offset to null pointer Signed-off-by: Michael

[FFmpeg-cvslog] avcodec/ilbcdec: Initialize tempbuff2

2025-05-16 Thread Michael Niedermayer
ffmpeg | branch: release/4.2 | Michael Niedermayer | Mon Sep 23 19:57:28 2024 +0200| [9df3db27d5143c3479745334083b3156413e5ec7] | committer: Michael Niedermayer avcodec/ilbcdec: Initialize tempbuff2 Fixes: Use of uninitialized value Fixes: 71350/clusterfuzz-testcase-minimized

[FFmpeg-cvslog] avformat/mlvdec: Check avio_read()

2025-05-16 Thread Michael Niedermayer
ffmpeg | branch: release/4.2 | Michael Niedermayer | Wed Dec 25 05:13:02 2024 +0100| [50456eb8d40d893658fc7b132d863e17d60b81c5] | committer: Michael Niedermayer avformat/mlvdec: Check avio_read() Fixes: use-of-uninitialized-value Fixes: 383170476/clusterfuzz-testcase-minimized

[FFmpeg-cvslog] avcodec/utils: Fix block align overflow for ADPCM_IMA_WAV

2025-05-16 Thread Michael Niedermayer
ffmpeg | branch: release/4.2 | Michael Niedermayer | Wed Dec 11 22:37:07 2024 +0100| [d53cf41505c5f49bd0bcb2df4ad2cd4a25d5b16b] | committer: Michael Niedermayer avcodec/utils: Fix block align overflow for ADPCM_IMA_WAV Fixes: signed integer overflow: 529008646 * 8 cannot be represented in

[FFmpeg-cvslog] avformat/dashdec: Check whitelist

2025-05-16 Thread Michael Niedermayer
ffmpeg | branch: release/4.2 | Michael Niedermayer | Thu Jan 16 00:22:05 2025 +0100| [e029108cea0f32f50b4baa1806559263c69e22b0] | committer: Michael Niedermayer avformat/dashdec: Check whitelist Fixes: CVE-2023-6602, V. DASH Playlist SSRF Found-by: Harvey Phillips of Amazon Element55

[FFmpeg-cvslog] swscale/output: Fix undefined overflow in yuv2rgba64_full_X_c_template()

2025-05-16 Thread Michael Niedermayer
ffmpeg | branch: release/4.2 | Michael Niedermayer | Sun Dec 1 03:25:09 2024 +0100| [d67d0175dbf7812d929f806d3d032f961e831587] | committer: Michael Niedermayer swscale/output: Fix undefined overflow in yuv2rgba64_full_X_c_template() Fixes: signed integer overflow: -1082982400 + -1195645138

[FFmpeg-cvslog] avcodec/aacsbr_template: Clear n_q on error

2025-05-16 Thread Michael Niedermayer
ffmpeg | branch: release/4.2 | Michael Niedermayer | Sun Dec 1 22:27:18 2024 +0100| [eef4ca9a67614df8822e032b7880a73c3a4eb3ff] | committer: Michael Niedermayer avcodec/aacsbr_template: Clear n_q on error Fixes: index 5 out of bounds for type 'uint8_t [5]' Fixes: 377748135/c

[FFmpeg-cvslog] avcodec/mpegvideo_enc: Check FLV1 resolution limits

2025-05-16 Thread Michael Niedermayer
ffmpeg | branch: release/4.2 | Michael Niedermayer | Wed Jan 8 02:59:28 2025 +0100| [a18b0ddf50055c8d3956267b9d2a7f9fed2baa50] | committer: Michael Niedermayer avcodec/mpegvideo_enc: Check FLV1 resolution limits Found-by: Elias Myllymäki Reviewed-by: Alexander Strasser Signed-off-by

[FFmpeg-cvslog] avcodec/ffv1enc: Fix handling of 32bit unsigned symbols

2025-05-16 Thread Michael Niedermayer
ffmpeg | branch: release/4.2 | Michael Niedermayer | Thu Jan 9 21:35:06 2025 +0100| [5a9ca53ac2490a83957d35295267b3f0754b1018] | committer: Michael Niedermayer avcodec/ffv1enc: Fix handling of 32bit unsigned symbols This may be needed for floats Sponsored-by: Sovereign Tech Fund Reviewed-by

[FFmpeg-cvslog] avformat/matroskadec: Check pre_ns for overflow

2025-05-16 Thread Michael Niedermayer
ffmpeg | branch: release/4.2 | Michael Niedermayer | Wed Dec 11 21:36:11 2024 +0100| [50f46db70db0f5f6b086f395e4ba292d4b9d2276] | committer: Michael Niedermayer avformat/matroskadec: Check pre_ns for overflow Fixes: signed integer overflow: -3483479120376300096 - 7442323944145700864 cannot

[FFmpeg-cvslog] avfilter/af_pan: Fix sscanf() use

2025-05-16 Thread Michael Niedermayer
ffmpeg | branch: release/4.2 | Michael Niedermayer | Mon Jan 6 22:01:39 2025 +0100| [6b43edeb24e4e7cbf4c85c94a86be7333a844f65] | committer: Michael Niedermayer avfilter/af_pan: Fix sscanf() use Fixes: Memory Data Leak Found-by: Simcha Kosman Signed-off-by: Michael Niedermayer (cherry

[FFmpeg-cvslog] avcodec/webp: Check ref_x/y

2025-05-16 Thread Michael Niedermayer
ffmpeg | branch: release/4.2 | Michael Niedermayer | Fri Aug 16 16:00:01 2024 +0200| [c8fbdc5c6f48f0bae55a1f27314ff0ac0756d8ff] | committer: Michael Niedermayer avcodec/webp: Check ref_x/y Fixes: 70991/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_WEBP_fuzzer-5544067620995072 Fixes: use

[FFmpeg-cvslog] avformat/dxa: check bpc

2025-05-16 Thread Michael Niedermayer
ffmpeg | branch: release/4.2 | Michael Niedermayer | Sat Oct 19 01:15:53 2024 +0200| [ce9505775a410f4f7c5cb5f8d10f918f7063d1fd] | committer: Michael Niedermayer avformat/dxa: check bpc Fixes: integer overflow: -2147483648 - 1 cannot be represented in type 'int' Fixes: 373971762/c

[FFmpeg-cvslog] avformat/mxfdec: Check that key was read sucessfull

2025-05-16 Thread Michael Niedermayer
ffmpeg | branch: release/4.2 | Michael Niedermayer | Sun Aug 11 22:53:47 2024 +0200| [777a03ebab06a6b3ec278cf8925222ed8131a4ff] | committer: Michael Niedermayer avformat/mxfdec: Check that key was read sucessfull Fixes: use of uninitialized value Fixes: 70932/clusterfuzz-testcase-minimized

[FFmpeg-cvslog] avcodec/ffv1dec: Fix end computation with ec=2

2025-05-16 Thread Michael Niedermayer
ffmpeg | branch: release/4.2 | Michael Niedermayer | Thu Oct 10 20:39:23 2024 +0200| [bcee885d181a70f5c4ca75596cf1e7ccc8793654] | committer: Michael Niedermayer avcodec/ffv1dec: Fix end computation with ec=2 Sponsored-by: Sovereign Tech Fund Signed-off-by: Michael Niedermayer (cherry picked

[FFmpeg-cvslog] avformat/mpegts: Initialize predefined_SLConfigDescriptor_seen

2025-05-16 Thread Michael Niedermayer
ffmpeg | branch: release/4.2 | Michael Niedermayer | Wed Oct 9 23:44:00 2024 +0200| [9b48ac2f856162f66502aab5adf7c22382268944] | committer: Michael Niedermayer avformat/mpegts: Initialize predefined_SLConfigDescriptor_seen Fixes: use of uninitialized variable Fixes: 368729566/clusterfuzz

[FFmpeg-cvslog] avformat/matroskadec: Check desc_bytes so bits fit in 64bit

2025-05-16 Thread Michael Niedermayer
ffmpeg | branch: release/4.2 | Michael Niedermayer | Sun Jul 28 22:08:23 2024 +0200| [e0c32729889b474ffdfd1810dad8a149c72a729e] | committer: Michael Niedermayer avformat/matroskadec: Check desc_bytes so bits fit in 64bit Likely a tighter check can be done Fixes: signed integer overflow

[FFmpeg-cvslog] avcodec/ffv1enc: Correct error message about unsupported version

2025-05-16 Thread Michael Niedermayer
ffmpeg | branch: release/4.2 | Michael Niedermayer | Tue Oct 1 22:04:58 2024 +0200| [f60e83c0d8e4b69f45b6410aafd6127a3c76f8bf] | committer: Michael Niedermayer avcodec/ffv1enc: Correct error message about unsupported version Sponsored-by: Sovereign Tech Fund Signed-off-by: Michael

[FFmpeg-cvslog] swscale/slice: clear allocated memory in alloc_lines()

2025-05-16 Thread Michael Niedermayer
ffmpeg | branch: release/4.2 | Michael Niedermayer | Sat Oct 19 00:08:03 2024 +0200| [201f2c5912d626b20be74938b4c9f2dedae398ff] | committer: Michael Niedermayer swscale/slice: clear allocated memory in alloc_lines() Fixes: use of uninitialized memory in hScale16To15_c() Fixes: 373924007

[FFmpeg-cvslog] avformat/icodec: fix integer overflow with nb_pal

2025-05-16 Thread Michael Niedermayer
ffmpeg | branch: release/4.2 | Michael Niedermayer | Sun Nov 3 11:07:27 2024 +0100| [f7dda674af21a110b828bc90219a9256cc2fe227] | committer: Michael Niedermayer avformat/icodec: fix integer overflow with nb_pal Fixes: runtime error: signed integer overflow Fixes: 42536949/clusterfuzz-testcase

[FFmpeg-cvslog] doc/developer: Document relationship between git accounts and MAINTAINERS

2025-05-16 Thread Michael Niedermayer
ffmpeg | branch: release/4.2 | Michael Niedermayer | Sat Nov 16 21:32:53 2024 +0100| [6a638d42cc4caad1b4970b585f399305a4f7c80f] | committer: Michael Niedermayer doc/developer: Document relationship between git accounts and MAINTAINERS This should have been documented long ago and i thought it

[FFmpeg-cvslog] avformat/ilbc: Check avio_read() for failure

2025-05-16 Thread Michael Niedermayer
ffmpeg | branch: release/4.2 | Michael Niedermayer | Sun Nov 3 20:47:07 2024 +0100| [3dec911f86deb7f5109c4b8ea5c2b8459297c9c8] | committer: Michael Niedermayer avformat/ilbc: Check avio_read() for failure Fixes: use of uninitialized value Fixes: 42537627/clusterfuzz-testcase-minimized

[FFmpeg-cvslog] avformat/nistspheredec: Clear buffer

2025-05-16 Thread Michael Niedermayer
ffmpeg | branch: release/4.2 | Michael Niedermayer | Sun Nov 3 20:43:21 2024 +0100| [5d945a7243e3c9972d85bbb98eb45d0680bad673] | committer: Michael Niedermayer avformat/nistspheredec: Clear buffer Fixes: use-of-uninitialized-value Fixes: 42537627/clusterfuzz-testcase-minimized

  1   2   3   4   5   6   7   8   9   10   >