mirror of
https://git.ffmpeg.org/ffmpeg.git
synced 2025-10-19 09:53:18 +00:00
tools/target_dec_fuzzer: Check that FFv1 doesnt leave uninitialized memory in its buffers
Sponsored-by: Sovereign Tech Fund
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc>
(cherry picked from commit e40b23c52a
)
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc>
This commit is contained in:
parent
c9d4fb32cf
commit
ca38b468d5
1 changed files with 8 additions and 1 deletions
|
@ -128,7 +128,14 @@ static int fuzz_video_get_buffer(AVCodecContext *ctx, AVFrame *frame)
|
||||||
|
|
||||||
frame->extended_data = frame->data;
|
frame->extended_data = frame->data;
|
||||||
for (i = 0; i < 4 && size[i]; i++) {
|
for (i = 0; i < 4 && size[i]; i++) {
|
||||||
frame->buf[i] = av_buffer_allocz(size[i]);
|
switch(ctx->codec_id) {
|
||||||
|
case AV_CODEC_ID_FFV1:
|
||||||
|
frame->buf[i] = av_buffer_alloc(size[i]);
|
||||||
|
break;
|
||||||
|
default:
|
||||||
|
frame->buf[i] = av_buffer_allocz(size[i]);
|
||||||
|
}
|
||||||
|
|
||||||
if (!frame->buf[i])
|
if (!frame->buf[i])
|
||||||
goto fail;
|
goto fail;
|
||||||
frame->data[i] = frame->buf[i]->data;
|
frame->data[i] = frame->buf[i]->data;
|
||||||
|
|
Loading…
Add table
Add a link
Reference in a new issue