-
Notifications
You must be signed in to change notification settings - Fork 104
A potential bug of NPD #36
Copy link
Copy link
Closed
Description
Hi, I found a potential null pointer dereference bug in the project source code of opusfile, and I have shown the execution sequence of the program that may generate the bug on the graph below. The red text illustrates the steps that generate the bug, the red arrows represent the control flow,the file path can be seen in the blue framed section.

Although the code shown is for version 0.9 but is still exist in current version
Lines 1527 to 1532 in cf218fb
| if(_initial_bytes>0){ | |
| char *buffer; | |
| buffer=ogg_sync_buffer(&_of->oy,(long)_initial_bytes); | |
| memcpy(buffer,_initial_data,_initial_bytes*sizeof(*buffer)); | |
| ogg_sync_wrote(&_of->oy,(long)_initial_bytes); | |
| } |
would you can help to check if this bug is true?thank you for your effort and patience!
Reactions are currently unavailable
Metadata
Metadata
Assignees
Labels
No labels