Open Bug 1859400 Opened 1 year ago Updated 18 days ago

HEVC file causes DoS of HEVC playback

Categories

(Core :: Audio/Video: Playback, defect, P2)

defect

Tracking

()

Tracking Status
firefox-esr115 --- unaffected
firefox119 --- disabled
firefox120 --- disabled
firefox121 --- affected

People

(Reporter: tsmith, Assigned: alwu)

References

(Blocks 2 open bugs)

Details

(Keywords: csectype-dos, testcase, Whiteboard: [fuzzblocker])

Attachments

(1 file)

Attached video testcase.mp4

Found with m-c 20231016-f64b858317d1 (--enable-debug --enable-fuzzing)

Attempting to play the test case hangs attempting to load(?). From this point on it is not possible to play HEVC files without relaunching the browser.

Flags: in-testsuite?
Assignee: nobody → alwu
Blocks: hevc

This test file seems crashing the whole GPU process, I am still not sure if it should be a security issue. But for safe, making this bug as a sec bug for now.

Group: media-core-security

This is nightly-only and surely it will be fixed before we ship. if we had to rate it we'd call it sec-low if anything, but we don't need to hide it.

Group: media-core-security

The severity field is not set for this bug.
:jimm, could you have a look please?

For more information, please visit BugBot documentation.

Flags: needinfo?(jmathies)
Flags: needinfo?(jmathies)

The severity field is not set for this bug.
:jimm, could you have a look please?

For more information, please visit BugBot documentation.

Flags: needinfo?(jmathies)
Severity: -- → S3
Flags: needinfo?(jmathies)
Priority: -- → P2

This bug prevents fuzzing from making progress; however, it has low severity. It is important for fuzz blocker bugs to be addressed in a timely manner (see here why?).
:alwu, could you consider increasing the severity?

For more information, please visit BugBot documentation.

Flags: needinfo?(alwu)
Flags: needinfo?(alwu)

Still happening in 131b4

You need to log in before you can comment on or make changes to this bug.

Attachment

General

Created:
Updated:
Size: