ffmpeg/libavcodec
Michael Niedermayer d304d7e794 avcodec/exr: Check buf_size more completely
Fixes: Out of heap array read
Fixes: 4683/clusterfuzz-testcase-minimized-6152313673613312

Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc>
(cherry picked from commit 903be5e4f6)
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc>
2017-12-30 21:10:17 +01:00
..
aarch64 lavc/aarch64: Do not use the neon horizontal chroma loop filter for H.264 4:2:2. 2015-02-13 20:48:08 +01:00
alpha
arm avcodec/arm/videodsp_armv5te: Fix linking failure with "g++ -shared -D__STDC_CONSTANT_MACROS -o test.so ... libavcodec.a" 2015-02-13 20:48:09 +01:00
avr32
bfin
mips mips/acelp_filters: fix incorrect register constraint 2015-03-29 03:34:22 +02:00
neon
ppc
sh4
sparc
x86 avcodec/x86/mpegvideodsp: Fix signedness bug in need_emu 2017-11-16 02:31:20 +01:00
4xm.c
8bps.c avcodec/8bps: Check side data size before use 2017-08-23 13:15:16 +02:00
8svx.c
012v.c avcodec/012v: redesign main loop 2015-03-29 03:34:22 +02:00
a64colors.h
a64multienc.c avcodec/a64multienc: Assert that the Packet size does not grow 2015-03-29 03:34:21 +02:00
a64tables.h
aac_ac3_parser.c
aac_ac3_parser.h
aac_adtstoasc_bsf.c
aac_parser.c aac_parser: add required padding for GetBitContext buffer 2015-07-08 23:37:51 +02:00
aac_tablegen_decl.h
aac_tablegen.c
aac_tablegen.h
aac.h
aacadtsdec.c
aacadtsdec.h
aaccoder.c aaccoder: prevent crash of anmr coder 2015-12-20 16:13:09 +01:00
aacdec.c avcodec/aacdec_template: Fix running cleanup in decode_ics_info() 2017-08-23 13:22:54 +02:00
aacdectab.h
aacenc.c Fix buffer_size argument to init_put_bits() in multiple encoders. 2015-03-29 03:34:22 +02:00
aacenc.h
aacps_tablegen.c
aacps_tablegen.h
aacps.c avcodec/aacps: Fix undefined behavior 2017-08-23 13:15:17 +02:00
aacps.h
aacpsdata.c
aacpsdsp.c
aacpsdsp.h
aacpsy.c Merge commit '7b66cf5ce7fdb8b3fa13459aab3f4d6ab559f1ea' into release/2.4 2015-05-06 03:20:49 +02:00
aacsbr_tablegen.c
aacsbr_tablegen.h
aacsbr.c avcodec/aacsbr_template: Do not change bs_num_env before its checked 2017-08-23 13:15:17 +02:00
aacsbr.h
aacsbrdata.h
aactab.c
aactab.h
aandcttab.c
aandcttab.h
aasc.c aasc: return correct buffer size from aasc_decode_frame 2015-05-05 21:41:26 +02:00
ac3_parser.c ac3_parser: add required padding for GetBitContext buffer 2015-07-08 23:37:51 +02:00
ac3_parser.h
ac3.c ac3: validate end in ff_ac3_bit_alloc_calc_mask 2015-04-25 15:06:54 +02:00
ac3.h
ac3dec_data.c
ac3dec_data.h
ac3dec_fixed.c avcodec/ac3dec_fixed: Fix multiple runtime error: signed integer overflow: -39271008 * 59 cannot be represented in type 'int' 2017-08-23 13:15:17 +02:00
ac3dec_float.c ac3dec_fixed: always use the USE_FIXED=1 variant of the AC3DecodeContext 2015-03-29 03:34:22 +02:00
ac3dec.c avcodec/ac3dec: Fix: runtime error: index -1 out of bounds for type 'INTFLOAT [2]' 2017-08-23 13:15:17 +02:00
ac3dec.h avcodec/ac3dec: Keep track of band structure 2017-08-23 13:15:17 +02:00
ac3dsp.c
ac3dsp.h
ac3enc_fixed.c
ac3enc_float.c
ac3enc_opts_template.c
ac3enc_template.c
ac3enc.c
ac3enc.h
ac3tab.c
ac3tab.h
acelp_filters.c
acelp_filters.h
acelp_pitch_delay.c avcodec/acelp_pitch_delay: Fix runtime error: value 4.83233e+39 is outside the range of representable values of type 'float' 2017-08-23 13:15:17 +02:00
acelp_pitch_delay.h
acelp_vectors.c
acelp_vectors.h
adpcm_data.c
adpcm_data.h
adpcm.c avcodec/adpcm: Check for overreads 2015-08-20 14:29:11 +02:00
adpcm.h
adpcmenc.c Fix buffer_size argument to init_put_bits() in multiple encoders. 2015-03-29 03:34:22 +02:00
adx_parser.c
adx.c
adx.h
adxdec.c avcodec/adxdec: Fix runtime error: left shift of negative value -1 2017-08-23 13:15:16 +02:00
adxenc.c
aic.c Merge commit 'f3dafb63d05896aacf84caf0e4c81c216476d60e' into release/2.4 2015-03-09 00:31:23 +01:00
alac_data.c
alac_data.h
alac.c avcodec/alac: Clear pointers in allocate_buffers() 2015-08-20 14:38:27 +02:00
alacenc.c
aliaspixdec.c
aliaspixenc.c
allcodecs.c
alsdec.c avcodec/alsdec: Check for overread 2015-08-20 14:29:11 +02:00
amr.h
amrnbdata.h
amrnbdec.c
amrwbdata.h
amrwbdec.c avcodec/amrwbdec: Fix division by 0 in voice_factor() 2017-12-10 20:23:15 +01:00
anm.c
ansi.c avcodec/ansi: Fix frame memleak 2017-08-23 13:15:17 +02:00
apedec.c avcodec/apedec: Fix integer overflow 2017-08-23 13:15:18 +02:00
ass_split.c avcodec/ass_split: Fix null pointer dereference in ff_ass_style_get() 2016-02-01 02:12:21 +01:00
ass_split.h
ass.c
ass.h
assdec.c
assenc.c
asv.c
asv.h
asvdec.c
asvenc.c
atrac1.c
atrac1data.h
atrac3.c
atrac3data.h
atrac3plus_data.h
atrac3plus.c
atrac3plus.h
atrac3plusdec.c avcodec/atrac3plusdec: consume only as many bytes as available 2015-08-20 14:29:11 +02:00
atrac3plusdsp.c avcodec/atrac3plusdsp: fix on stack alignment 2015-04-25 15:06:54 +02:00
atrac.c
atrac.h
audio_frame_queue.c
audio_frame_queue.h
audioconvert.c
audioconvert.h
audiodsp.c
audiodsp.h
aura.c
avcodec.h avcodec/avcodec: Limit the number of side data elements per packet 2017-08-23 13:15:17 +02:00
avcodecres.rc
avdct.c
avdct.h
avfft.c
avfft.h
avpacket.c avcodec/avcodec: Limit the number of side data elements per packet 2017-08-23 13:15:17 +02:00
avpicture.c
avrndec.c
avs.c Merge commit '9e0a38d32b36fac7fd73bdb93e820ae0b9e03616' into release/2.4 2015-01-18 02:59:01 +01:00
avuidec.c
avuienc.c
bethsoftvideo.c
bethsoftvideo.h
bfi.c
bgmc.c
bgmc.h
bink.c
binkaudio.c
binkdata.h
binkdsp.c
binkdsp.h
bintext.c
bintext.h
bit_depth_template.c
bitstream_filter.c
bitstream.c avcodec/bitstream: Assert that there is enough space left in avpriv_copy_bits() 2015-06-01 23:25:19 +02:00
blockdsp.c
blockdsp.h
bmp_parser.c avcodec/bmp_parser: Check fsize 2017-08-23 13:15:16 +02:00
bmp.c
bmp.h
bmpenc.c
bmvaudio.c
bmvvideo.c avcodec/bmvvideo: Fix runtime error: left shift of 137 by 24 places cannot be represented in type 'int' 2017-08-23 13:15:17 +02:00
brenderpix.c
bswapdsp.c
bswapdsp.h
bytestream.h bytestream2: set the reader to the end when reading more than available 2015-08-20 14:38:27 +02:00
c93.c
cabac_functions.h avcodec/cabac: Check initial cabac decoder state 2015-12-06 12:40:50 +01:00
cabac_tablegen.c
cabac_tablegen.h
cabac.c avcodec/cabac: Check initial cabac decoder state 2015-12-06 12:40:50 +01:00
cabac.h avcodec/cabac: Check initial cabac decoder state 2015-12-06 12:40:50 +01:00
cavs_parser.c
cavs.c avcodec/cavs: Fix runtime error: signed integer overflow: -12648062 * 256 cannot be represented in type 'int' 2017-08-23 13:15:17 +02:00
cavs.h
cavsdata.c
cavsdec.c avcodec/cavsdec: Fix runtime error: signed integer overflow: 59 + 2147483600 cannot be represented in type 'int' 2017-08-23 13:15:17 +02:00
cavsdsp.c avcodec/cavsdsp: use av_clip_uint8() for idct 2017-08-23 13:15:16 +02:00
cavsdsp.h
cbrt_tablegen.c
cbrt_tablegen.h
cdgraphics.c
cdxl.c avcodec/cdxl: Check format for BGR24 2017-08-23 13:15:17 +02:00
celp_filters.c
celp_filters.h
celp_math.c
celp_math.h
cga_data.c
cga_data.h
chomp_bsf.c
cinepak.c avcodec/cinepak: Check input packet size before frame reallocation 2017-08-23 13:15:17 +02:00
cinepakenc.c
cljrdec.c
cljrenc.c
cllc.c avcodec/cllc: Check prefix 2017-08-23 13:15:17 +02:00
cngdec.c avcodec/cngdec: Fix integer clipping 2017-11-09 19:59:15 +01:00
cngenc.c
codec_desc.c
cook_parser.c
cook.c Merge commit '484e015dc8b9983297e9269b406c65084daf4528' into release/2.4 2015-01-18 02:02:00 +01:00
cookdata.h
copy_block.h
cos_tablegen.c
cpia.c
crystalhd.c
cscd.c
cyuv.c
dca_parser.c
dca.c dca: fix misaligned access in avpriv_dca_convert_bitstream 2016-01-28 02:15:49 +01:00
dca.h
dcadata.h
dcadec.c avcodec/dcadec: Check active_bands 2015-06-01 23:25:21 +02:00
dcadsp.c
dcadsp.h
dcaenc.c avcodec/dcaenc: clear bitstream end 2015-08-20 14:38:28 +02:00
dcaenc.h
dcahuff.h
dct32_fixed.c
dct32_float.c
dct32_template.c
dct32.h
dct-test.c
dct.c
dct.h
dctref.c
dctref.h
dfa.c avcodec/dfa: Fix: runtime error: signed integer overflow: -14202 * 196877 cannot be represented in type 'int' 2017-08-23 13:15:17 +02:00
dirac_arith.c
dirac_arith.h
dirac_dwt.c
dirac_dwt.h avcodec/dirac_dwt: Fix integer overflow in COMPOSE_DD97iH0() and COMPOSE_DD137iL0() 2017-12-28 20:25:16 +01:00
dirac_parser.c avcodec/dirac_parser: Check that there is a previous PU before accessing it 2015-12-06 12:40:51 +01:00
dirac.c
dirac.h
diracdec.c avcodec/diracdec: Fix overflow in DC computation 2017-09-11 13:28:46 +02:00
diracdsp.c
diracdsp.h
dnxhd_parser.c
dnxhddata.c
dnxhddata.h
dnxhddec.c avcodec/dnxhddec: Check that the frame is interlaced before using cur_field 2015-03-29 03:34:23 +02:00
dnxhdenc.c Merge commit '61fdbf7ff64c0ae1bdd6a8d573092dc6924c1dba' into release/2.4 2015-01-18 02:34:25 +01:00
dnxhdenc.h
dpcm.c
dpx_parser.c
dpx.c avcodec/dpx: Move need_align to act per line 2015-12-06 12:40:49 +01:00
dpxenc.c avcodec/dpxenc: implement write16/32 as functions 2015-08-20 14:38:25 +02:00
dsd_tablegen.c
dsd_tablegen.h
dsddec.c
dsicinaudio.c
dsicinvideo.c
dsputil_compat.c
dsputil.h
dump_extradata_bsf.c
dv_profile_internal.h
dv_profile.c
dv_profile.h
dv_tablegen.c
dv_tablegen.h
dv.c
dv.h
dvbsub_parser.c
dvbsub.c
dvbsubdec.c avcodec/dvbsubdec: Check entry_id 2017-08-23 13:15:17 +02:00
dvd_nav_parser.c
dvdata.c
dvdata.h
dvdec.c avcodec/dvdec: Fix "left shift of negative value -254" 2016-01-31 00:25:20 +01:00
dvdsub_parser.c
dvdsubdec.c avcodec/dvdsubdec: Fix runtime error: left shift of 242 by 24 places cannot be represented in type 'int' 2017-08-23 13:15:17 +02:00
dvdsubenc.c
dvenc.c
dxa.c
dxtory.c avcodec/dxtory: Fix input size check in dxtory_decode_v1_410() 2015-12-06 12:40:49 +01:00
dxva2_h264.c
dxva2_internal.h
dxva2_mpeg2.c
dxva2_vc1.c
dxva2.c
dxva2.h
eac3_data.c
eac3_data.h
eac3dec.c avcodec/eac3dec: Fix runtime error: left shift of negative value -3 2017-08-23 13:15:16 +02:00
eac3enc.c
eac3enc.h
eacmv.c
eaidct.c
eaidct.h
eamad.c avcodec/eamad: Fix runtime error: signed integer overflow: 49674 * 49858 cannot be represented in type 'int' 2017-08-23 13:15:17 +02:00
eatgq.c
eatgv.c
eatqi.c avcodec/eatqi: Fix runtime error: signed integer overflow: 4466147 * 1075 cannot be represented in type 'int' 2017-08-23 13:15:17 +02:00
elbg.c
elbg.h
error_resilience.c avcodec/error_resilience: avoid accessing previous or next frames tables beyond height 2015-12-06 12:40:49 +01:00
error_resilience.h
escape124.c
escape130.c
evrcdata.h
evrcdec.c
exif.c
exif.h
exr.c avcodec/exr: Check buf_size more completely 2017-12-30 21:10:17 +01:00
faandct.c
faandct.h
faanidct.c
faanidct.h
faxcompr.c Fix buffer_size argument to init_put_bits() in multiple encoders. 2015-03-29 03:34:22 +02:00
faxcompr.h
fdctdsp.c
fdctdsp.h
fft_fixed_32.c
fft_fixed.c
fft_float.c
fft_init_table.c
fft_table.h
fft_template.c
fft-fixed32-test.c
fft-fixed-test.c
fft-internal.h
fft-test.c
fft.h
ffv1.c avcodec/ffv1: Initialize vlc_state on allocation 2015-12-06 12:40:49 +01:00
ffv1.h avcodec/ffv1: seperate slice_count from max_slice_count 2015-10-09 22:07:46 +02:00
ffv1dec.c avcodec/ffv1dec: Fix out of array read in slice counting 2017-10-13 13:02:27 +02:00
ffv1enc.c avcodec/ffv1enc: Fix size of first slice 2017-08-23 13:15:16 +02:00
ffwavesynth.c
fic.c avcodec/fic: Fixes signed integer overflow 2017-08-23 13:15:18 +02:00
file_open.c
flac_parser.c avcodec/flac_parser: Update nb_headers_buffered 2017-08-23 13:15:16 +02:00
flac.c
flac.h
flacdata.c
flacdata.h
flacdec.c avcodec/flacdec: Fix overflow in multiplication in decode_subframe_fixed() 2017-12-28 20:27:46 +01:00
flacdsp_lpc_template.c
flacdsp_template.c avcodec/flacdsp_template: Fix undefined shift in flac_decorrelate_indep_c 2017-08-23 13:15:16 +02:00
flacdsp.c
flacdsp.h
flacenc.c avcodec/flacenc: fix calculation of bits required in case of custom sample rate 2016-02-01 02:12:22 +01:00
flashsv2enc.c Fix buffer_size argument to init_put_bits() in multiple encoders. 2015-03-29 03:34:22 +02:00
flashsv.c avcodec/flashsv: Check size before updating it 2015-12-06 12:40:49 +01:00
flashsvenc.c avcodec/flashsvenc: Correct max dimension in error message 2015-08-20 14:38:28 +02:00
flicvideo.c avcodec/flicvideo: Fix runtime error: signed integer overflow: 4864 * 459296 cannot be represented in type 'int' 2017-08-23 13:15:17 +02:00
flv.h
flvdec.c
flvenc.c
fmtconvert.c
fmtconvert.h
frame_thread_encoder.c
frame_thread_encoder.h
fraps.c
frwu.c
g2meet.c avcodec/g2meet: Also clear tile dimensions on header_fail 2015-12-06 12:40:48 +01:00
g722.c
g722.h
g722dec.c
g722enc.c
g723_1_data.h
g723_1.c
g726.c avcodec/g726: Fix runtime error: left shift of negative value -2 2017-08-23 13:15:17 +02:00
g729.h
g729data.h
g729dec.c
g729postfilter.c
g729postfilter.h
get_bits.h avcodec/get_bits: Fix get_sbits_long(0) 2017-08-23 13:15:16 +02:00
gif.c avcodec/gif: Fix lzw buffer size 2016-01-31 00:25:21 +01:00
gif.h
gifdec.c
golomb-test.c
golomb.c
golomb.h avcodec/golomb: get_ur_golomb_jpegls: Fix reading huge k values 2015-06-01 23:25:21 +02:00
gsm_parser.c
gsm.h
gsmdec_data.c
gsmdec_data.h
gsmdec_template.c
gsmdec.c
h261_parser.c
h261.c
h261.h
h261data.c
h261dec.c
h261enc.c
h263_parser.c
h263_parser.h
h263.c
h263.h
h263data.h
h263dec.c
h263dsp.c
h263dsp.h
h264_cabac.c avcodec/h264_cabac: Fix CABAC+8x8dct in 4:4:4 2017-08-23 13:15:18 +02:00
h264_cavlc.c
h264_direct.c avcodec/h264_direct: Fix runtime error: left shift of negative value -14 2017-08-23 13:15:16 +02:00
h264_loopfilter.c
h264_mb_template.c
h264_mb.c avcodec/h264_mb: Fix 8x8dct in lossless for new versions of x264 2017-08-23 13:15:18 +02:00
h264_mc_template.c
h264_mp4toannexb_bsf.c avcodec/h264_mp4toannexb_bsf: Reorder operations in nal_size check 2015-08-21 03:40:15 +02:00
h264_mvpred.h avcodec/h264_mvpred: Fix multiple runtime error: left shift of negative value 2017-08-23 13:15:16 +02:00
h264_parser.c avcodec/h264: Do not fail with randomly truncated VUIs 2015-04-25 15:06:54 +02:00
h264_picture.c
h264_ps.c avcodec/h264: Do not fail with randomly truncated VUIs 2015-04-25 15:06:54 +02:00
h264_refs.c avcodec/h264_refs: Fix long_idx check 2016-01-31 00:25:19 +01:00
h264_sei.c
h264_slice.c avcodec/h264_slice: Fix integer overflow in implicit weight computation 2016-01-31 00:25:20 +01:00
h264.c avcodec/h264: Fix for H.264 configuration parsing 2017-08-23 13:15:16 +02:00
h264.h avcodec/h264dec: Fix potential array overread 2017-11-16 02:39:05 +01:00
h264addpx_template.c
h264chroma_template.c
h264chroma.c
h264chroma.h
h264data.h
h264dsp_template.c
h264dsp.c
h264dsp.h
h264idct_template.c avcodec/h264idct_template: Fix integer overflows in ff_h264_idct8_add() 2017-11-09 02:45:49 +01:00
h264idct.c
h264idct.h
h264pred_template.c
h264pred.c
h264pred.h
h264qpel_template.c
h264qpel.c
h264qpel.h
hevc_cabac.c avcodec/hevc_cabac: Fix integer overflow in ff_hevc_cu_qp_delta_abs() 2017-12-28 20:22:42 +01:00
hevc_filter.c avcodec/hevc_filter: Fix invalid shift 2017-08-23 13:15:18 +02:00
hevc_mvs.c
hevc_parser.c
hevc_ps.c avcodec/hevc_ps: Check delta_pocs in ff_hevc_decode_short_term_rps() 2017-08-24 12:57:00 +02:00
hevc_refs.c avcodec/hevc_refs: Check nb_refs in add_candidate_ref() 2017-08-23 13:15:18 +02:00
hevc_sei.c avcodec/hevc_sei: Fix integer overflows in decode_nal_sei_message() 2017-12-28 20:21:24 +01:00
hevc.c avcodec/hevcdec: Fix signed integer overflow in decode_lt_rps() 2017-08-23 13:15:18 +02:00
hevc.h avcodec/hevc_ps: Fix c?_qp_offset_list size 2017-09-12 02:30:39 +02:00
hevcdsp_template.c avcodec/hevcdsp_template: Fix Invalid shifts in put_hevc_qpel_bi_w_h() and put_hevc_qpel_bi_w_w() 2017-12-28 20:27:31 +01:00
hevcdsp.c
hevcdsp.h
hevcpred_template.c avcodec/hevcpred_template: Fix left shift of negative value 2017-08-23 13:15:18 +02:00
hevcpred.c
hevcpred.h
hnm4video.c Merge commit 'e7ee74485b436c34591177c18c8643764a55d516' into release/2.4 2015-01-18 01:59:36 +01:00
hpel_template.c
hpeldsp.c
hpeldsp.h
huffman.c
huffman.h
huffyuv.c
huffyuv.h
huffyuvdec.c huffyuvdec: validate image size 2015-11-26 01:38:17 +01:00
huffyuvdsp.c
huffyuvdsp.h
huffyuvenc.c
huffyuvencdsp.c
huffyuvencdsp.h
idcinvideo.c avcodec/idcinvideo: Check side data size before use 2017-08-23 13:15:16 +02:00
idctdsp.c
idctdsp.h
iff.c
iirfilter.c
iirfilter.h
imc.c imc: use correct position for flcoeffs2 calculation 2015-11-26 01:38:17 +01:00
imcdata.h
imgconvert.c avcodec/imgconvert: Support non-planar colorspaces while padding 2017-08-23 13:15:16 +02:00
imgconvert.h
imx_dump_header_bsf.c
indeo2.c avcodec/indeo2: Check remaining bits in ir2_decode_plane() 2017-08-23 13:15:17 +02:00
indeo2data.h indeo2: Fix banding artefacts 2017-08-23 13:15:16 +02:00
indeo3.c
indeo3data.h
indeo4.c
indeo4data.h
indeo5.c
indeo5data.h
intelh263dec.c
internal.h Merge commit '61fdbf7ff64c0ae1bdd6a8d573092dc6924c1dba' into release/2.4 2015-01-18 02:34:25 +01:00
interplayvideo.c avcodec/interplayvideo: Move parameter change check up 2017-08-23 13:15:16 +02:00
intrax8.c
intrax8.h
intrax8dsp.c
intrax8dsp.h
intrax8huf.h
ituh263dec.c avcodec/ituh263dec: Fix runtime error: left shift of negative value -22 2017-08-23 13:15:16 +02:00
ituh263enc.c avcodec/motion_est: Fix mv_penalty table size 2016-01-31 00:25:20 +01:00
ivi_common.c avcodec/ivi: Check image dimensions 2015-12-06 12:40:49 +01:00
ivi_common.h
ivi_dsp.c avcodec/ivi_dsp: Fix runtime error: left shift of negative value -2 2017-08-23 13:15:17 +02:00
ivi_dsp.h
j2kenc.c avcodec/j2kenc: Fix out of array access in encode_cblk() 2017-12-01 23:54:34 +01:00
jacosub.h
jacosubdec.c
jfdctfst.c
jfdctint_template.c
jfdctint.c
jpeg2000.c avcodec/jpeg2000: Check that codsty->log2_prec_widths/heights has been initialized 2017-10-05 01:27:02 +02:00
jpeg2000.h avcodec/jpeg2000: Fix runtime error: signed integer overflow: 4185 + 2147483394 cannot be represented in type 'int' 2017-08-23 13:15:17 +02:00
jpeg2000dec.c avcodec/jpeg2000dec: Check nonzerobits more completely 2017-08-23 13:15:18 +02:00
jpeg2000dwt.c avcodec/jpeg2000dwt: Check ndeclevels before calling dwt_encode*() 2015-12-06 12:40:50 +01:00
jpeg2000dwt.h
jpegls.c
jpegls.h
jpeglsdec.c avcodec/jpeglsdec: Check for end of bitstream in ls_decode_line() 2017-11-01 22:16:01 +01:00
jpeglsdec.h
jpeglsenc.c
jrevdct.c
jvdec.c
kbdwin.c
kbdwin.h
kgv1dec.c avcodec/kgv1dec: Check that there is enough input for maximum RLE compression 2017-12-01 23:19:53 +01:00
kmvc.c avcodec/kmvc: Check side data size before use 2017-08-23 13:15:16 +02:00
lagarith.c avcodec/lagarith: Check scale_factor 2017-08-23 13:15:17 +02:00
lagarithrac.c
lagarithrac.h
latm_parser.c
lcl.h
lcldec.c
lclenc.c
libaacplus.c
libavcodec.v
libcelt_dec.c
libfaac.c
libfdk-aacdec.c avcodec/libfdk-aacdec: Correct buffer_size parameter 2017-08-23 13:15:17 +02:00
libfdk-aacenc.c
libgsmdec.c
libgsmenc.c
libilbc.c
libmp3lame.c
libopencore-amr.c
libopenjpegdec.c libopenjpegdec: check existence of image component data 2015-08-20 14:29:12 +02:00
libopenjpegenc.c libopenjpegenc: add NULL check for img before accessing it 2015-06-03 03:22:17 +02:00
libopus.c
libopus.h
libopusdec.c
libopusenc.c avcodec/libopusenc: Fix infinite loop on flushing after 0 input 2015-12-06 12:40:48 +01:00
libschroedinger.c
libschroedinger.h
libschroedingerdec.c
libschroedingerenc.c
libshine.c
libspeexdec.c
libspeexenc.c
libstagefright.cpp
libtheoraenc.c avcodec/libtheoraenc: Check for av_malloc failure 2015-06-01 23:25:21 +02:00
libtwolame.c libavcodec/libtwolame: fix null pointer dereference 2015-01-18 02:24:53 +01:00
libutvideo.h
libutvideodec.cpp avcodec/libutvideodec: copy frame so it has reference counters when refcounted_frames is set 2017-08-23 13:15:16 +02:00
libutvideoenc.cpp
libvo-aacenc.c
libvo-amrwbenc.c
libvorbisdec.c
libvorbisenc.c
libvpx.c
libvpx.h
libvpxdec.c
libvpxenc.c libvpxenc: remove some unused ctrl id mappings 2017-12-01 23:50:41 +01:00
libwavpackenc.c
libwebpenc.c
libx264.c libx264: Increase x264 opts character limit to 4096 2017-08-23 13:15:16 +02:00
libx265.c
libxavs.c
libxvid_rc.c
libxvid.c
libxvid.h
libzvbi-teletextdec.c
ljpegenc.c
loco.c
log2_tab.c
lossless_audiodsp.c
lossless_audiodsp.h
lossless_videodsp.c
lossless_videodsp.h
lpc.c
lpc.h
lsp.c
lsp.h
lzw.c
lzw.h
lzwenc.c
mace.c
Makefile ac3dec_fixed: always use the USE_FIXED=1 variant of the AC3DecodeContext 2015-03-29 03:34:22 +02:00
mathops.h
mathtables.c
mdct_fixed_32.c
mdct_fixed.c avcodec/mdct_*: Fix integer overflow in addition in RESCALE() 2017-11-13 20:05:25 +01:00
mdct_float.c
mdct_template.c avcodec/mdct_*: Fix integer overflow in addition in RESCALE() 2017-11-13 20:05:25 +01:00
mdec.c avcodec/mdec: Fix signed integer overflow: 28835400 * 83 cannot be represented in type 'int' 2017-08-23 13:15:17 +02:00
me_cmp.c avcodec/me_cmp: Fix crashes on ARM due to misalignment 2017-08-23 13:15:18 +02:00
me_cmp.h
metasound_data.c
metasound_data.h
metasound.c
microdvddec.c avcodec/microdvddec: Check for string end in 'P' case 2015-12-06 12:40:49 +01:00
mimic.c avcodec/mimic: Use ff_set_dimensions() to set the dimensions 2017-08-23 13:15:17 +02:00
mjpeg2jpeg_bsf.c
mjpeg_parser.c
mjpeg.c
mjpeg.h
mjpega_dump_header_bsf.c
mjpegbdec.c
mjpegdec.c avcodec/mjpegdec: Check that reference frame matches the current frame 2017-08-23 13:15:17 +02:00
mjpegdec.h
mjpegenc_common.c avcodec/mjpegenc_common: Store approximate aspect if exact cannot be stored 2017-08-23 13:15:16 +02:00
mjpegenc_common.h
mjpegenc.c
mjpegenc.h
mlp_parser.c
mlp_parser.h
mlp.c
mlp.h
mlpdec.c avcodec/mlpdec: Do not leave invalid values in matrix_out_ch[] on error 2017-08-23 13:15:17 +02:00
mlpdsp.c avcodec/mlpdsp: Fix signed integer overflow, 2nd try 2017-12-01 23:20:35 +01:00
mlpdsp.h
mmvideo.c
motion_est_template.c
motion_est.c avcodec/motion_est: Fix mv_penalty table size 2016-01-31 00:25:20 +01:00
motion-test.c
motionpixels_tablegen.c
motionpixels_tablegen.h
motionpixels.c
movsub_bsf.c
movtextdec.c
movtextenc.c
mp3_header_decompress_bsf.c
mpc7.c
mpc7data.h
mpc8.c avcodec/mpc8: Correct end truncation 2017-08-23 13:15:16 +02:00
mpc8data.h
mpc8huff.h
mpc.c
mpc.h
mpcdata.h
mpeg4audio.c
mpeg4audio.h avcodec/mpeg4audio: add some padding/alignment to MAX_PCE_SIZE 2015-06-01 23:25:20 +02:00
mpeg4data.h
mpeg4video_parser.c
mpeg4video_parser.h
mpeg4video.c
mpeg4video.h avcodec/mpeg4video: Check time_incr 2016-01-31 00:25:20 +01:00
mpeg4videodec.c avcodec/mpeg4videodec: Check also for negative versions in the validity check 2017-11-21 21:24:47 +01:00
mpeg4videoenc.c avcodec/mpeg4video: Check time_incr 2016-01-31 00:25:20 +01:00
mpeg12.c
mpeg12.h
mpeg12data.c
mpeg12data.h
mpeg12dec.c avcodec/mpeg12dec: Fix runtime error: left shift of negative value -2 2017-08-23 13:15:16 +02:00
mpeg12enc.c avcodec/mpeg12enc: Move high resolution thread check to before initializing threads 2016-02-01 02:12:21 +01:00
mpeg_er.c
mpeg_er.h
mpegaudio_parser.c
mpegaudio_tablegen.c
mpegaudio_tablegen.h
mpegaudio.c
mpegaudio.h
mpegaudiodata.c
mpegaudiodata.h
mpegaudiodec_fixed.c
mpegaudiodec_float.c
mpegaudiodec_template.c avcodec/mpegaudiodec_template: Make l3_unscale() work with e=0 2017-08-23 13:15:17 +02:00
mpegaudiodecheader.c
mpegaudiodecheader.h
mpegaudiodectab.h
mpegaudiodsp_data.c
mpegaudiodsp_fixed.c
mpegaudiodsp_float.c
mpegaudiodsp_template.c
mpegaudiodsp.c
mpegaudiodsp.h
mpegaudioenc_fixed.c
mpegaudioenc_float.c
mpegaudioenc_template.c
mpegaudiotab.h
mpegutils.c
mpegutils.h
mpegvideo_enc.c avcodec/mpeg4video: Check time_incr 2016-01-31 00:25:20 +01:00
mpegvideo_motion.c avcodec/mpeg4video: Fix runtime error: left shift of negative value 2017-08-23 13:15:16 +02:00
mpegvideo_parser.c
mpegvideo_xvmc.c
mpegvideo.c avcodec/mpegvideo: Do not clear the parse context during init 2017-08-23 13:15:16 +02:00
mpegvideo.h avcodec/motion_est: Fix mv_penalty table size 2016-01-31 00:25:20 +01:00
mpegvideodsp.c
mpegvideodsp.h
mpegvideoencdsp.c
mpegvideoencdsp.h
mpl2dec.c
mqc.c
mqc.h
mqcdec.c
mqcenc.c
msgsmdec.c
msgsmdec.h
msmpeg4.c
msmpeg4.h
msmpeg4data.c
msmpeg4data.h
msmpeg4dec.c avcodec/msmpeg4dec: Check for cbpy VLC errors 2017-08-23 13:15:17 +02:00
msmpeg4enc.c
msrle.c avcodec/msrle: Check side data size before use 2017-08-23 13:15:16 +02:00
msrledec.c msrle: Use FFABS to determine the frame size in msrle_decode_pal4 2015-05-30 16:30:22 +02:00
msrledec.h
mss1.c
mss2.c avcodec/mss2: Check for repeat overflow 2016-01-31 00:25:20 +01:00
mss2dsp.c
mss2dsp.h
mss3.c avcodec/mss3: Change types in rac_get_model_sym() to match the types they are initialized from 2017-08-23 13:15:17 +02:00
mss4.c
mss12.c
mss12.h
mss34dsp.c avcodec/mss34dsp: Fix multiple signed integer overflow 2017-08-23 13:15:17 +02:00
mss34dsp.h
msvideo1.c avcodec/msvideo1: Check buffer size before re-getting the frame 2017-08-23 13:15:17 +02:00
msvideo1enc.c
mvcdec.c
mxpegdec.c
nellymoser.c avcodec/nellymoser: Fix multiple left shift of negative value -8591 2017-08-23 13:15:17 +02:00
nellymoser.h
nellymoserdec.c
nellymoserenc.c Fix buffer_size argument to init_put_bits() in multiple encoders. 2015-03-29 03:34:22 +02:00
noise_bsf.c
nuv.c
old_codec_ids.h
on2avc.c on2avc: limit number of bits to 30 in get_egolomb 2015-12-20 16:13:27 +01:00
on2avcdata.c
on2avcdata.h
options_table.h avcodec/options_table: remove extradata_size from the AVOptions table 2015-03-29 03:34:22 +02:00
options.c
opus_celt.c
opus_imdct.c
opus_imdct.h
opus_parser.c
opus_silk.c avcodec/opus_silk: Fix integer overflow and out of array read 2017-08-23 13:15:17 +02:00
opus.c
opus.h Merge commit 'c49b88b93bca53c04f18d78c27dbf1dc6daea909' into release/2.4 2015-08-20 14:20:26 +02:00
opusdec.c opusdec: Don't run vector_fmul_scalar on zero length arrays 2015-11-26 01:38:17 +01:00
paf.h
pafaudio.c
pafvideo.c avcodec/pafvideo: Check for bitstream end in decode_0() 2017-10-15 00:45:14 +02:00
pamenc.c
parser.c
parser.h
pcm_tablegen.c
pcm_tablegen.h
pcm-bluray.c
pcm-dvd.c
pcm.c
pcx.c
pcxenc.c
pel_template.c
pgssubdec.c pgssubdec: fix subpicture output colorspace and range 2017-08-23 13:15:16 +02:00
pictordec.c avcodec/pictordec: Check plane value before doing value/mask computations 2017-08-23 13:15:16 +02:00
pixblockdsp_template.c
pixblockdsp.c avcodec/me_cmp: Fix crashes on ARM due to misalignment 2017-08-23 13:15:18 +02:00
pixblockdsp.h avcodec/me_cmp: Fix crashes on ARM due to misalignment 2017-08-23 13:15:18 +02:00
pixels.h
png_parser.c
png.c
png.h
pngdec.c avcodec/pngdec: Clean up on av_frame_ref() failure 2017-09-20 03:09:18 +02:00
pngdsp.c
pngdsp.h
pngenc.c
pnm_parser.c
pnm.c avcodec/pnm: Use ff_set_dimensions() 2017-08-23 13:15:17 +02:00
pnm.h
pnmdec.c
pnmenc.c
proresdata.c
proresdata.h
proresdec2.c avcodec/proresdec2: SKIP_BITS() does not work with len=32 2017-10-05 01:28:26 +02:00
proresdec_lgpl.c Merge commit 'cf3523c6e7dde33a513e003639d5a8c0b7f3a49d' into release/2.4 2015-03-09 00:10:43 +01:00
proresdec.h
proresdsp.c
proresdsp.h
proresenc_anatoliy.c Fix buffer_size argument to init_put_bits() in multiple encoders. 2015-03-29 03:34:22 +02:00
proresenc_kostya.c Fix buffer_size argument to init_put_bits() in multiple encoders. 2015-03-29 03:34:22 +02:00
psymodel.c
psymodel.h
pthread_frame.c avcodec/pthread_frame: clear priv_data, avoid stale pointer in error case 2015-08-20 14:38:27 +02:00
pthread_internal.h
pthread_slice.c avcodec/mpeg12enc: Move high resolution thread check to before initializing threads 2016-02-01 02:12:21 +01:00
pthread.c
ptx.c
put_bits.h avcodec/put_bits: Assert buf_ptr in flush_put_bits() 2016-01-31 00:25:20 +01:00
qcelpdata.h
qcelpdec.c
qdm2_tablegen.c
qdm2_tablegen.h
qdm2.c
qdm2data.h
qdrw.c
qpeg.c avcodec/qpeg: Check side data size before use 2017-08-23 13:15:16 +02:00
qpel_template.c
qpeldsp.c
qpeldsp.h
qtrle.c avcodec/qtrle: Check side data size before use 2017-08-23 13:15:16 +02:00
qtrleenc.c
r210dec.c
r210enc.c
ra144.c avcodec/ra144: Fix runtime error: signed integer overflow: -2200 * 1033073 cannot be represented in type 'int' 2017-08-23 13:15:17 +02:00
ra144.h
ra144dec.c avcodec/ra144dec: Fix runtime error: left shift of negative value -17 2017-08-23 13:15:17 +02:00
ra144enc.c
ra288.c
ra288.h
ralf.c
ralfdata.h
rangecoder.c
rangecoder.h
ratecontrol.c
ratecontrol.h
raw.c avcodec/raw: Fix decoding of ilacetest.mov 2017-08-23 13:15:16 +02:00
raw.h
rawdec.c avcodec/rawdec: Check side data size before use 2017-08-23 13:15:16 +02:00
rawenc.c avcodec/rawenc: Use ff_alloc_packet() instead of ff_alloc_packet2() 2015-08-20 14:38:26 +02:00
rdft.c
rdft.h
realtextdec.c
rectangle.h
remove_extradata_bsf.c
resample2.c
resample.c avcodec/resample: Remove disabled and faulty code 2017-08-23 13:15:16 +02:00
rl2.c
rl.h
rle.c
rle.h
rnd_avg.h
roqaudioenc.c Merge commit '12e1a7013a53ad957c4ff11a3aebc0763024d24b' into release/2.4 2015-01-18 02:00:21 +01:00
roqvideo.c
roqvideo.h
roqvideodec.c
roqvideoenc.c roqvideoenc: set enc->avctx in roq_encode_init 2015-05-19 12:03:48 +01:00
rpza.c
rtjpeg.c
rtjpeg.h
rv10.c
rv10enc.c Merge commit '8aee35acb1b40e51a4fc8d7f7c561088e25d6d2e' into release/2.4 2015-03-09 01:23:24 +01:00
rv20enc.c
rv30.c
rv30data.h
rv30dsp.c
rv34_parser.c
rv34.c avcodec/rv34: Fix runtime error: signed integer overflow: 36880 * 66288 cannot be represented in type 'int' 2017-08-23 13:15:17 +02:00
rv34.h
rv34data.h
rv34dsp.c
rv34dsp.h
rv34vlc.h
rv40.c avcodec/rv40: Fix runtime error: left shift of negative value 2017-08-23 13:15:16 +02:00
rv40data.h
rv40dsp.c avcodec/rv40: Fix runtime error: left shift of negative value 2017-08-23 13:15:16 +02:00
rv40vlc2.h
s3tc.c
s3tc.h
s302m.c avcodec/s302m: Fix left shift of 8 by 28 places cannot be represented in type 'int' 2017-08-23 13:15:17 +02:00
s302menc.c Fix buffer_size argument to init_put_bits() in multiple encoders. 2015-03-29 03:34:22 +02:00
samidec.c avcodec/samidec: make sure to properly restore parsing context after a tag 2016-01-28 02:09:46 +01:00
sanm.c avcodec/sanm: Fix uninitialized reference frames 2017-08-23 13:15:17 +02:00
sbr.h avcodec/aacsbr: check that the element type matches before applying SBR 2015-08-20 14:38:26 +02:00
sbrdsp.c
sbrdsp.h
sgi.h
sgidec.c
sgienc.c
sgirledec.c
shorten.c avcodec/shorten: Sanity check maxnlpc 2017-08-23 13:15:18 +02:00
simple_idct_template.c
simple_idct.c
simple_idct.h
sinewin_tablegen.c
sinewin_tablegen.h
sinewin.c
sinewin.h
sipr16k.c
sipr16kdata.h
sipr.c
sipr.h
siprdata.h
smacker.c avcodec/smacker: Check that the data size is a multiple of a sample vector 2015-12-06 12:40:50 +01:00
smc.c avcodec/smc: Check remaining input 2017-08-23 13:15:17 +02:00
smvjpegdec.c avcodec/smvjpegdec: check avcodec_decode_video2() return code 2015-06-01 23:25:21 +02:00
snow_dwt.c
snow_dwt.h
snow.c
snow.h avcodec/snow: Fix runtime error: signed integer overflow: 1086573993 + 1086573994 cannot be represented in type 'int' 2017-08-23 13:15:17 +02:00
snowdata.h
snowdec.c avcodec/snowdec: Check for remaining bitstream in decode_blocks() 2017-11-17 20:39:52 +01:00
snowenc.c avcodec/motion_est: Fix mv_penalty table size 2016-01-31 00:25:20 +01:00
sonic.c sonic: make sure num_taps * channels is not larger than frame_size 2015-12-20 16:13:23 +01:00
sp5x.h
sp5xdec.c
srtdec.c
srtenc.c
startcode.c
startcode.h
subviewerdec.c
sunrast.c avcodec/sunrast: Fix input buffer pointer check 2017-08-23 13:15:16 +02:00
sunrast.h
sunrastenc.c
svq1_cb.h
svq1_vlc.h
svq1.c
svq1.h
svq1dec.c avcodec/svq1dec: Check init_get_bits8() for failure 2015-12-06 12:40:48 +01:00
svq1enc_cb.h
svq1enc.c avcodec/svq1enc: Check dimensions 2015-08-20 14:38:28 +02:00
svq1enc.h
svq3.c avcodec/svq3: Fix overflow in svq3_add_idct_c() 2017-09-24 02:41:03 +02:00
svq3.h
svq13.c
synth_filter.c
synth_filter.h
tableprint.h
tak_parser.c
tak.c
tak.h
takdec.c avcodec/takdec: Fix integer overflow in decode_lpc() 2017-09-25 11:10:33 +02:00
targa_y216dec.c avcodec/targa_y216dec: Fix width type 2017-08-23 13:15:17 +02:00
targa.c
targa.h
targaenc.c
textdec.c
thread.h
tiertexseqv.c avcodec/tiertexseqv: set the fixed dimenasions, do not depend on the demuxer doing so 2017-08-23 13:15:17 +02:00
tiff_common.c
tiff_common.h
tiff_data.c
tiff_data.h
tiff.c avcodec/tiff: Fix leak of geotags[].val 2017-08-23 13:15:17 +02:00
tiff.h
tiffenc.c Merge commit 'b82170336f90d06c645d8252ddeccfc92c2f9ccb' into release/2.4 2015-01-18 02:00:54 +01:00
tmv.c
tpeldsp.c
tpeldsp.h
truemotion1.c avcodec/truemotion1: Fix multiple runtime error: signed integer overflow: 1246906962 * 2 cannot be represented in type 'int' 2017-08-23 13:15:17 +02:00
truemotion1data.h
truemotion2.c avcodec/truemotion2: Fix integer overflows in tm2_high_chroma() 2017-10-05 01:30:06 +02:00
truespeech_data.h
truespeech.c
tscc2.c
tscc2data.h
tscc.c avcodec/tscc: Check side data size before use 2017-08-23 13:15:16 +02:00
tta.c avcodec/tta: Check init_get_bits8() for failure 2015-12-06 12:40:48 +01:00
ttadata.c
ttadata.h
ttadsp.c
ttadsp.h
ttaenc.c avcodec/ttaenc: Reallocate packet if its too small 2017-08-23 13:15:16 +02:00
twinvq_data.h
twinvq.c
twinvq.h
twinvqdec.c
txd.c
ulti_cb.h
ulti.c
unary.h
utils.c avcodec/utils: correct align value for interplay 2017-08-23 13:15:16 +02:00
utvideo.c
utvideo.h
utvideodec.c utvideodec: Handle slice_height being zero 2015-03-09 00:51:48 +01:00
utvideoenc.c
v210dec.c
v210dec.h
v210enc.c
v210x.c
v308dec.c
v308enc.c
v408dec.c
v408enc.c
v410dec.c
v410enc.c
vaapi_h264.c
vaapi_internal.h
vaapi_mpeg2.c
vaapi_mpeg4.c
vaapi_vc1.c
vaapi.c Merge commit '20f9cf744a9a82ac4b269cb4317a5d59a8553baf' into release/2.4 2015-01-17 23:58:28 +01:00
vaapi.h
vb.c avcodec/vb: Check vertical GMC component before multiply 2017-08-23 13:15:18 +02:00
vble.c
vc1_common.h
vc1_parser.c
vc1.c
vc1.h
vc1acdata.h
vc1data.c
vc1data.h
vc1dec.c vc1dec: use get_bits_long and limit the read bits to 32 2015-11-26 01:38:17 +01:00
vc1dsp.c
vc1dsp.h
vcr1.c
vda_h264_dec.c
vda_h264.c
vda_internal.h
vda.c
vda.h
vdpau_h264.c
vdpau_internal.h
vdpau_mpeg4.c
vdpau_mpeg12.c
vdpau_vc1.c
vdpau.c
vdpau.h
version.h
videodsp_template.c
videodsp.c
videodsp.h
vima.c
vmdaudio.c
vmdvideo.c
vmnc.c avcodec/vmnc: Check location before use 2017-08-23 13:15:17 +02:00
vorbis_data.c
vorbis_enc_data.h
vorbis_parser.c
vorbis_parser.h
vorbis.c avcodec/vorbis: Fix another 1 << 31 > int32_t::max() with 1u. 2017-12-02 00:14:44 +01:00
vorbis.h
vorbisdec.c vorbisdec: reject rangebits 0 with non-0 partitions 2016-01-28 02:15:49 +01:00
vorbisdsp.c
vorbisdsp.h
vorbisenc.c
vp3_parser.c
vp3.c avcodec/vp3: Check remaining bits in unpack_dct_coeffs() 2017-08-23 13:15:17 +02:00
vp3data.h
vp3dsp.c avcodec/vp3dsp: Fix multiple signed integer overflow: 46341 * 47523 cannot be represented in type 'int' 2017-08-23 13:15:16 +02:00
vp3dsp.h
vp5.c avcodec/vp568: Check that there is enough data for ff_vp56_init_range_decoder() 2017-08-23 13:15:16 +02:00
vp5data.h
vp6.c avcodec/vp6: clear dimensions on failed resolution change in vp6_parse_header() 2017-08-23 13:15:16 +02:00
vp6data.h
vp6dsp.c
vp8_parser.c
vp8.c avcodec/webp: Always set pix_fmt 2017-08-23 13:15:17 +02:00
vp8.h avcodec/vp8: Check for bitsteam end in decode_mb_row_no_filter() 2017-08-23 13:15:16 +02:00
vp8data.h
vp8dsp.c avcodec/vp8dsp: vp7_luma_dc_wht_c: Fix multiple runtime error: signed integer overflow: -1366381240 + -1262413604 cannot be represented in type 'int' 2017-08-23 13:15:17 +02:00
vp8dsp.h
vp9_mc_template.c vp9: add support for resolution changes in inter frames. 2015-11-26 01:38:16 +01:00
vp9_parser.c vp9: add support for resolution changes in inter frames. 2015-11-26 01:38:16 +01:00
vp9.c avcodec/vp568: Check that there is enough data for ff_vp56_init_range_decoder() 2017-08-23 13:15:16 +02:00
vp9.h
vp9data.h
vp9dsp.c vp9: add support for resolution changes in inter frames. 2015-11-26 01:38:16 +01:00
vp9dsp.h vp9: add support for resolution changes in inter frames. 2015-11-26 01:38:16 +01:00
vp56.c avcodec/vp56: Check avctx->error_concealment before enabling EC 2017-08-23 13:15:17 +02:00
vp56.h avcodec/vp568: Check that there is enough data for ff_vp56_init_range_decoder() 2017-08-23 13:15:16 +02:00
vp56data.c
vp56data.h
vp56dsp.c
vp56dsp.h
vp56rac.c avcodec/vp568: Check that there is enough data for ff_vp56_init_range_decoder() 2017-08-23 13:15:16 +02:00
vqavideo.c avcodec/vqavideo: Check chunk size 2015-06-01 23:25:20 +02:00
wavpack.c avcodec/wavpack: Fix invalid shift 2017-08-23 13:15:18 +02:00
wavpack.h avcodec/wavpack: Fix runtime error: signed integer overflow: 1886191616 + 277872640 cannot be represented in type 'int' 2017-08-23 13:15:18 +02:00
wavpackenc.c avcodec/wavpackenc: print channel count in av_log call 2016-01-31 00:25:20 +01:00
wavpackenc.h
webp.c avcodec/webp: Fixes null pointer dereference 2017-08-23 13:15:17 +02:00
webvttdec.c
webvttenc.c
wma_common.c
wma_common.h
wma_freqs.c
wma_freqs.h
wma.c
wma.h
wmadata.h
wmadec.c
wmaenc.c avcodec/wmaenc: Check ff_wma_init() for failure 2016-02-01 02:12:21 +01:00
wmalosslessdec.c libavcodec/wmalosslessdec: Check the remaining bits 2017-08-23 13:15:16 +02:00
wmaprodata.h
wmaprodec.c avcodec/wmaprodec: Check bits per sample to be within the range not causing integer overflows 2015-12-06 12:40:51 +01:00
wmavoice_data.h
wmavoice.c wmavoice: limit wmavoice_decode_packet return value to packet size 2015-08-20 14:38:26 +02:00
wmv2.c
wmv2.h
wmv2dec.c avcodec/wmv2dec: Check end of bitstream in parse_mb_skip() and ff_wmv2_decode_mb() 2017-11-21 03:25:26 +01:00
wmv2dsp.c avcodec/wmv2dsp: Fix runtime error: signed integer overflow: 181 * -17047030 cannot be represented in type 'int' 2017-08-23 13:15:17 +02:00
wmv2dsp.h
wmv2enc.c
wnv1.c avcodec/wnv1: More strict buffer size check 2017-08-23 13:15:17 +02:00
ws-snd1.c
xan.c avcodec/xan: Check for bitstream end in xan_huffman_decode() 2017-11-09 02:45:23 +01:00
xbmdec.c
xbmenc.c
xface.c
xface.h
xfacedec.c
xfaceenc.c
xiph.c
xiph.h
xl.c
xsubdec.c
xsubenc.c
xvididct.c
xvididct.h
xvmc_internal.h
xvmc.h
xwd.h
xwddec.c avcodec/xwddec: Check bpp more completely 2017-08-23 13:15:17 +02:00
xwdenc.c
xxan.c
y41pdec.c
y41penc.c
yop.c
yuv4dec.c
yuv4enc.c
zerocodec.c
zmbv.c avcodec/zmbv: Check that the buffer is large enough for mvec 2017-11-21 03:26:20 +01:00
zmbvenc.c