From 63e75d69eb672ea03b273a405ae606a58629233e Mon Sep 17 00:00:00 2001 From: Kiran Bhupali Date: Tue, 26 Apr 2022 11:58:08 +0530 Subject: [PATCH] CVE-2021-4156:flac-Fix improper buffer reusing Signed-off-by: Kiran Bhupali --- src/flac.c | 4 ++++ 1 file changed, 4 insertions(+) diff --git a/src/flac.c b/src/flac.c index 64d0172e..ea562f03 100644 --- a/src/flac.c +++ b/src/flac.c @@ -948,7 +948,11 @@ flac_read_loop (SF_PRIVATE *psf, unsigned len) /* Decode some more. */ while (pflac->pos < pflac->len) { if (FLAC__stream_decoder_process_single (pflac->fsd) == 0) + { psf_log_printf (psf, "FLAC__stream_decoder_process_single returned false\n") ; + /* Current frame is busted, so NULL the pointer. */ + pflac->frame = NULL ; break ; + }; state = FLAC__stream_decoder_get_state (pflac->fsd) ; if (state >= FLAC__STREAM_DECODER_END_OF_STREAM) { psf_log_printf (psf, "FLAC__stream_decoder_get_state returned %s\n", FLAC__StreamDecoderStateString [state]) ; -- Gitee