angler-fishThe Vulnerability History Project

cavsdec: check for changing w/h.

      Our decoder does not support changing w/h.

Fixes CVE-2012-2777 and CVE-2012-2784.

Found-by: Mateusz "j00ru" Jurczyk and Gynvael Coldwind
Signed-off-by: Anton Khirnov <anton@khirnov.net>
    
commit c20a69630619d14ae92c5541d52c579d7c8f3e94
+2 -11
expand_less