From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: Received: from ffbox0-bg.mplayerhq.hu (ffbox0-bg.ffmpeg.org [79.124.17.100]) by master.gitmailbox.com (Postfix) with ESMTP id 0711441272 for ; Fri, 28 Apr 2023 04:43:28 +0000 (UTC) Received: from [127.0.1.1] (localhost [127.0.0.1]) by ffbox0-bg.mplayerhq.hu (Postfix) with ESMTP id 2F2FC68BF53; Fri, 28 Apr 2023 07:43:26 +0300 (EEST) Received: from mail-wr1-f52.google.com (mail-wr1-f52.google.com [209.85.221.52]) by ffbox0-bg.mplayerhq.hu (Postfix) with ESMTPS id 2DB3A687FF0 for ; Fri, 28 Apr 2023 07:43:20 +0300 (EEST) Received: by mail-wr1-f52.google.com with SMTP id ffacd0b85a97d-2f95231618aso5926519f8f.1 for ; Thu, 27 Apr 2023 21:43:20 -0700 (PDT) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20221208; t=1682656998; x=1685248998; h=content-transfer-encoding:mime-version:message-id:date:subject:cc :to:from:from:to:cc:subject:date:message-id:reply-to; bh=7pxHccXEzyHh6V8lEpvTneR6WVYKE09xth7SmDcdeKQ=; b=KStmzn92lK6kmEtZVkj3f5IJCADJ5r1AZiVjbl4KXQNTjlt6JY6yhjVn3CPOX9e3uF WeATSwz6vbuu8ThmRvwk1415q4Z5222LBx5DFoVBFVGUVfx1SfpDW3pNkXiTL/YwE85J dQ5ke6GVUCdFQQ6lAiMi3OEoLzB1tFiq8k2pVUSKDzoqPUrIpMRRuUF4X0RQ63F67UXz bz2KEVfJ5rnrLRebefPy3zJTCWmmnGBSaKsDOb3PlG8xXhnMWOxR74l348WzXoatzaHj HXAehOkaZyZVQSdmc3o6m0cNjqkdLVCNvinBbpHqR9fBbA0NJ56GiABIPrNiFpPe2PRn HuuQ== X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20221208; t=1682656998; x=1685248998; h=content-transfer-encoding:mime-version:message-id:date:subject:cc :to:from:x-gm-message-state:from:to:cc:subject:date:message-id :reply-to; bh=7pxHccXEzyHh6V8lEpvTneR6WVYKE09xth7SmDcdeKQ=; b=U/CwSe2EFg6fgnA+8Rjf6vi09Nt5mdccynMAeSKbKlk3KxFqxkYpCbraUA5ruqdHE3 4UkqFmVTyBSRLTn/zPLoWMId2RfE+N9XDAMnc1K/6NSKvuUMGq8YXo16cdZgwBMwD8xt LcylZhQ19ptkwrenQc793hoplJEX3uDRCJMV64ON0DyqF9I+ppW3UJG2fbQ8WWrGOUMy nRY8IMGHNcB+OavHsYZ7k2MePKyfudfhRDJLPmHjFx/43Mkogx7hQGgz0HaE2asDeVn0 7JMrNj5r+GSDXxCdvCClf4dXcfPZ1MmyC5Q3lW7LpO62i8ZuAVyO1V0nq8JXPyIVXoak awTQ== X-Gm-Message-State: AC+VfDwQoLd1cFp0iLYKqkpYNMTLXgthgdl7Co3/hylNtklxT14JhdWc f6XTukkc4UEYFGY+3g27QycE7xF1NSRomA== X-Google-Smtp-Source: ACHHUZ7N9Grye2WnKcSDlnvm73G3x8oOzaW+Yq6wGmAP+9p3Jc+9TvKu0jWy5Xn72MNPo9YL+nf3Ww== X-Received: by 2002:adf:fc92:0:b0:2f2:7a7e:6ac with SMTP id g18-20020adffc92000000b002f27a7e06acmr3086651wrr.48.1682656998349; Thu, 27 Apr 2023 21:43:18 -0700 (PDT) Received: from caleb.strathmore.local ([156.0.233.55]) by smtp.gmail.com with ESMTPSA id l18-20020a05600c4f1200b003f07ef4e3e0sm34399600wmq.0.2023.04.27.21.43.16 (version=TLS1_3 cipher=TLS_AES_256_GCM_SHA384 bits=256/256); Thu, 27 Apr 2023 21:43:17 -0700 (PDT) From: etemesicaleb@gmail.com To: ffmpeg-devel@ffmpeg.org Date: Fri, 28 Apr 2023 07:42:48 +0300 Message-Id: <20230428044248.42988-1-etemesicaleb@gmail.com> X-Mailer: git-send-email 2.39.2 MIME-Version: 1.0 Subject: [FFmpeg-devel] [PATCH] avcodec/jpeg2000dec: Ensure calculation of buf_size cannot overflow. X-BeenThere: ffmpeg-devel@ffmpeg.org X-Mailman-Version: 2.1.29 Precedence: list List-Id: FFmpeg development discussions and patches List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Reply-To: FFmpeg development discussions and patches Cc: caleb , pal@sandflow.com Content-Type: text/plain; charset="us-ascii" Content-Transfer-Encoding: 7bit Errors-To: ffmpeg-devel-bounces@ffmpeg.org Sender: "ffmpeg-devel" Archived-At: List-Archive: List-Post: From: caleb --- libavcodec/jpeg2000htdec.c | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/libavcodec/jpeg2000htdec.c b/libavcodec/jpeg2000htdec.c index 51cd96e0f1..d77293ddd8 100644 --- a/libavcodec/jpeg2000htdec.c +++ b/libavcodec/jpeg2000htdec.c @@ -595,7 +595,7 @@ static int jpeg2000_decode_ht_cleanup_segment(const Jpeg2000DecoderContext *s, const uint16_t quad_width = ff_jpeg2000_ceildivpow2(width, 1); const uint16_t quad_height = ff_jpeg2000_ceildivpow2(height, 1); - size_t buf_size = 4 * quad_width * quad_height; + size_t buf_size = 4UL * quad_width * quad_height; uint8_t *sigma_n = av_calloc(buf_size, sizeof(uint8_t)); uint8_t *E = av_calloc(buf_size, sizeof(uint8_t)); -- 2.39.2 _______________________________________________ ffmpeg-devel mailing list ffmpeg-devel@ffmpeg.org https://ffmpeg.org/mailman/listinfo/ffmpeg-devel To unsubscribe, visit link above, or email ffmpeg-devel-request@ffmpeg.org with subject "unsubscribe".