File ffmpeg-CVE-2025-22921.patch of Package ffmpeg.39181
commit 7f9c7f9849a2155224711f0ff57ecdac6e4bfb57 (20250111_CVE-2025-22921_7f9c7f9849a2155224711f0ff57ecdac6e4bfb57_null_bsc#1237382)
Author: James Almer <jamrial@gmail.com>
Date: Wed Jan 1 23:58:39 2025 -0300
avcodec/jpeg2000dec: clear array length when freeing it
Fixes NULL pointer dereferences.
Fixes ticket #11393.
Reviewed-by: Michael Niedermayer <michael@niedermayer.cc>
Signed-off-by: James Almer <jamrial@gmail.com>
--- a/libavcodec/jpeg2000dec.c
+++ b/libavcodec/jpeg2000dec.c
@@ -1051,6 +1051,7 @@
}
}
}
+ cblk->nb_lengthinc = 0;
}
return 0;
}