mov: validate number of DataReferenceBox entries against box size
Avoids a 2G memory allocation and parsing of random data in mov_read_dref(). The fuzzed sample sample.mp4_s224424 triggers this.
Showing
Please
register
or
sign in
to comment