[FFmpeg-trac] #9738(ffplay:new): Malicious webm video

FFmpeg trac at avcodec.org
Wed Apr 20 03:48:33 EEST 2022


#9738: Malicious webm video
---------------------------------+------------------------------------
             Reporter:  c0re100  |                     Type:  defect
               Status:  new      |                 Priority:  critical
            Component:  ffplay   |                  Version:  4.4.1
             Keywords:           |               Blocked By:
             Blocking:           |  Reproduced by developer:  0
Analyzed by developer:  0        |
---------------------------------+------------------------------------
 Summary of the bug: When using ffplay to play that webm file, ffplay will
 consuming 4-6GB RAM.

 How to reproduce:
 1. ffplay sticker.webm
 2. Check your task manager
 3. ffplay RAM usage is growing up/down as unexpected

 {{{
 ffmpeg -version
 ffmpeg version 4.4.1-essentials_build-www.gyan.dev Copyright (c) 2000-2021
 the FFmpeg developers
 built with gcc 11.2.0 (Rev1, Built by MSYS2 project)
 }}}
-- 
Ticket URL: <https://trac.ffmpeg.org/ticket/9738>
FFmpeg <https://ffmpeg.org>
FFmpeg issue tracker


More information about the FFmpeg-trac mailing list