Closed Bug 1183756 Opened 7 years ago Closed 6 years ago

OpenH264: NULL deref [@WelsDec::PrefetchPic]

Categories

(External Software Affecting Firefox :: OpenH264, defect)

defect
Not set
critical

Tracking

(Not tracked)

RESOLVED FIXED

People

(Reporter: tsmith, Unassigned)

References

(Blocks 1 open bug)

Details

(4 keywords)

Attachments

(4 files)

No description provided.
Severity: normal → critical
Summary: WelsDec::DecodeCurrentAccessUnit → OpenH264: NULL deref [@OpeWelsDec::PrefetchPic]
Attached file callstack.txt
Attached file test_case.264
Depends on: 1170319
this bug exists in openh264 v1.4-Firefox38 branch and openh264 master branch
This bug has been fixed in the latest version of openh264 master branch.
Attached file test_case-for_fix.264
Looks like I spoke too soon. I was able to find this issue again through fuzzing.
See Also: → 1197888
Group: core-security
Keywords: csectype-other
Summary: OpenH264: NULL deref [@OpeWelsDec::PrefetchPic] → OpenH264: NULL deref [@WelsDec::PrefetchPic]
Group: core-security → media-core-security
Status: NEW → RESOLVED
Closed: 6 years ago
Resolution: --- → FIXED
Group: media-core-security → core-security-release
Group: core-security-release
You need to log in before you can comment on or make changes to this bug.