Are we sure this is fixed? I just cloned the cvs repo for lame on
sourceforge and compiled it (LAME 64bits version 3.100 (alpha 2, Feb 26
2015 04:31:03) (http://lame.sf.net)) and ran it against AFL and I'm still
seeing an FPE:
==30731== Process terminating with default action of signal 8
Am Mittwoch, den 25.02.2015, 22:40 -0600 schrieb Brian Carpenter:
Are we sure this is fixed? I just cloned the cvs repo for lame on
sourceforge and compiled it (LAME 64bits version 3.100 (alpha 2, Feb
26 2015 04:31:03) (http://lame.sf.net)) and ran it against AFL and I'm
still seeing an FPE:
Hi all,
fortunately, this is all in the frontend code in
frontend/get_audio.c:parse_wave_header() and not in the library. The
bits_per_sample value is read from the corrupted file and is 0 in the
case at hand. It is then used without further sanity checking in the
following call