Hendrik Leppkes <[email protected]> writes:

> 2012/2/29 Måns Rullgård <[email protected]>:
>> There's much more to it than that.  Almost anything using
>> variable-length codes will need more than a simple packet size check, or
>> a damaged/malicious bitstream may cause over-reads.
>>
>
> At least sipr, ra144 and ra288 do not use any variable length codes.

Variable-length codes are not the only cause of over-reads.

-- 
Måns Rullgård
[email protected]
_______________________________________________
libav-devel mailing list
[email protected]
https://lists.libav.org/mailman/listinfo/libav-devel

Reply via email to