From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: X-Spam-Checker-Version: SpamAssassin 3.4.0 (2014-02-07) on dcvr.yhbt.net X-Spam-Level: X-Spam-ASN: AS3561 216.34.176.0/20 X-Spam-Status: No, score=-3.1 required=3.0 tests=AWL,BAYES_00,DKIM_SIGNED, HEADER_FROM_DIFFERENT_DOMAINS,RCVD_IN_DNSWL_HI,RCVD_IN_MSPIKE_H3, RCVD_IN_MSPIKE_WL,RP_MATCHES_RCVD,SPF_HELO_PASS,SPF_PASS,T_DKIM_INVALID shortcircuit=no autolearn=ham autolearn_force=no version=3.4.0 Received: from lists.sourceforge.net (lists.sourceforge.net [216.34.181.88]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by dcvr.yhbt.net (Postfix) with ESMTPS id E138420A10 for ; Tue, 7 Nov 2017 01:14:37 +0000 (UTC) Received: from localhost ([127.0.0.1] helo=sfs-ml-3.v29.ch3.sourceforge.com) by sfs-ml-3.v29.ch3.sourceforge.com with esmtp (Exim 4.89) (envelope-from ) id 1eBsTJ-0007J4-Fk; Tue, 07 Nov 2017 01:14:33 +0000 Received: from sfi-mx-2.v28.ch3.sourceforge.com ([172.29.28.192] helo=mx.sourceforge.net) by sfs-ml-3.v29.ch3.sourceforge.com with esmtps (TLSv1.2:ECDHE-RSA-AES256-GCM-SHA384:256) (Exim 4.89) (envelope-from ) id 1eBsTI-0007Iy-2O for sox-devel@lists.sourceforge.net; Tue, 07 Nov 2017 01:14:32 +0000 DKIM-Signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed; d=sourceforge.net; s=x; h=In-Reply-To:Content-Transfer-Encoding:Content-Type: MIME-Version:References:Message-ID:Subject:Cc:To:From:Date:Sender:Reply-To: Content-ID:Content-Description:Resent-Date:Resent-From:Resent-Sender: Resent-To:Resent-Cc:Resent-Message-ID:List-Id:List-Help:List-Unsubscribe: List-Subscribe:List-Post:List-Owner:List-Archive; bh=LPgWIZ4Sh5xM3P0OeT64inbhz2Ns1Zt48xilQCzzcA4=; b=U8vX8oy20mBBZnhMgm5ddrXvXx kt5tE405EJUkexb9dNibYnJhDWsh3IqmSaY3qezFlxXuSWPE2OYlSHnXGXZeZNFWbkB/+h6MPIDRC GRI0/Qz3+FcK1CddzimnTYyXaSjBWEMesOokBKsaFCDOhY2F23KBwiwRVHVHa9hzLsuM=; DKIM-Signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed; d=sf.net; s=x ; h=In-Reply-To:Content-Transfer-Encoding:Content-Type:MIME-Version: References:Message-ID:Subject:Cc:To:From:Date:Sender:Reply-To:Content-ID: Content-Description:Resent-Date:Resent-From:Resent-Sender:Resent-To:Resent-Cc :Resent-Message-ID:List-Id:List-Help:List-Unsubscribe:List-Subscribe: List-Post:List-Owner:List-Archive; bh=LPgWIZ4Sh5xM3P0OeT64inbhz2Ns1Zt48xilQCzzcA4=; b=JYL9hjtm84LdsKguArogjd5i12 mGZdBmZf/RFCbUsWRvYLry+RvJY3GILYTsPVkrMDLFu2ij1Y6LU3w+uiz3gzz6ZubXDMrJ+l9Hcbz 57z2sf+RYRD/7W1Ez0S0iXsR9utBoXzzd5akiEyaiTCGfUX2xHWQOrBvWNoEH77oINxE=; Received: from dcvr.yhbt.net ([64.71.152.64]) by sfi-mx-2.v28.ch3.sourceforge.com with esmtps (TLSv1.2:ECDHE-RSA-AES256-GCM-SHA384:256) (Exim 4.89) id 1eBsTF-0004nx-OK for sox-devel@lists.sourceforge.net; Tue, 07 Nov 2017 01:14:32 +0000 Received: from localhost (dcvr.yhbt.net [127.0.0.1]) by dcvr.yhbt.net (Postfix) with ESMTP id EC42320A10; Tue, 7 Nov 2017 01:14:23 +0000 (UTC) Date: Tue, 7 Nov 2017 01:14:23 +0000 From: Eric Wong To: sox-devel@lists.sourceforge.net Message-ID: <20171107011423.GA26133@starla> References: MIME-Version: 1.0 Content-Disposition: inline In-Reply-To: X-Headers-End: 1eBsTF-0004nx-OK Subject: [PATCH] adpcm: fix stack overflow (CVE-2017-15372) X-BeenThere: sox-devel@lists.sourceforge.net X-Mailman-Version: 2.1.21 Precedence: list List-Id: List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Reply-To: sox-devel@lists.sourceforge.net Cc: =?utf-8?B?TcOlbnMgUnVsbGfDpXJk?= Content-Type: text/plain; charset="utf-8" Content-Transfer-Encoding: base64 Errors-To: sox-devel-bounces@lists.sourceforge.net TcOlbnMgUnVsbGfDpXJkIDxtYW5zQG1hbnNyLmNvbT4gd3JvdGU6Cj4gQWxsIGJ1dCBvbmUgZml4 ZWQgaGVyZTogaHR0cHM6Ly9naXRodWIuY29tL21hbnNyL3NveAoKSSB0aGluayB0aGlzIHNob3Vs ZCBmaXggdGhlIGxhc3Qgb25lLiAgSSBkaWRuJ3QgY2hlY2sgdG9vCmNsb3NlbHksIGp1c3QgdmVy aWZpZWQgaXQncyBubyBsb25nZXIgc2VnZmF1bHRpbmcuCgooQnV0IGxzeF92YWxsb2MgZG9lc24n dCBjaGVjayBmb3IgbXVsdGlwbGljYXRpb24gb3ZlcmZsb3cpCgotLS0tLS0tLS0tLTg8LS0tLS0t LS0tCkZyb206IEVyaWMgV29uZyA8ZUA4MHgyNC5vcmc+ClN1YmplY3Q6IFtQQVRDSF0gYWRwY206 IGZpeCBzdGFjayBvdmVyZmxvdyAoQ1ZFLTIwMTctMTUzNzIpCgotLS0KIHNyYy9hZHBjbS5jIHwg NSArKysrLQogMSBmaWxlIGNoYW5nZWQsIDQgaW5zZXJ0aW9ucygrKSwgMSBkZWxldGlvbigtKQoK ZGlmZiAtLWdpdCBhL3NyYy9hZHBjbS5jIGIvc3JjL2FkcGNtLmMKaW5kZXggMmUxMzg2N2UuLmU5 MjFlYWJhIDEwMDY0NAotLS0gYS9zcmMvYWRwY20uYworKysgYi9zcmMvYWRwY20uYwpAQCAtMTEz LDcgKzExMywxMCBAQCBjb25zdCBjaGFyICpsc3hfbXNfYWRwY21fYmxvY2tfZXhwYW5kX2koCiAg IGNvbnN0IHVuc2lnbmVkIGNoYXIgKmlwOwogICB1bnNpZ25lZCBjaDsKICAgY29uc3QgY2hhciAq ZXJybXNnID0gTlVMTDsKLSAgTXNTdGF0ZV90IHN0YXRlWzRdOyAgLyogT25lIGRlY29tcHJlc3Nv ciBzdGF0ZSBmb3IgZWFjaCBjaGFubmVsICovCisgIE1zU3RhdGVfdCAqc3RhdGU7CisKKyAgLyog T25lIGRlY29tcHJlc3NvciBzdGF0ZSBmb3IgZWFjaCBjaGFubmVsICovCisgIGxzeF92YWxsb2Mo c3RhdGUsIGNoYW5zKTsKIAogICAvKiBSZWFkIHRoZSBmb3VyLWJ5dGUgaGVhZGVyIGZvciBlYWNo IGNoYW5uZWwgKi8KICAgaXAgPSBpYnVmZjsKLS0gCkVXCgotLS0tLS0tLS0tLS0tLS0tLS0tLS0t LS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0K Q2hlY2sgb3V0IHRoZSB2aWJyYW50IHRlY2ggY29tbXVuaXR5IG9uIG9uZSBvZiB0aGUgd29ybGQn cyBtb3N0CmVuZ2FnaW5nIHRlY2ggc2l0ZXMsIFNsYXNoZG90Lm9yZyEgaHR0cDovL3NkbS5saW5r L3NsYXNoZG90Cl9fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19f ClNvWC1kZXZlbCBtYWlsaW5nIGxpc3QKU29YLWRldmVsQGxpc3RzLnNvdXJjZWZvcmdlLm5ldApo dHRwczovL2xpc3RzLnNvdXJjZWZvcmdlLm5ldC9saXN0cy9saXN0aW5mby9zb3gtZGV2ZWwK