From 970ee065ad3dacb99e86323ffd3e8b1d8c7dcc65 Mon Sep 17 00:00:00 2001 From: Cristy Date: Sun, 4 Feb 2018 15:22:46 -0500 Subject: [PATCH] https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=5448 --- coders/dcm.c | 4 +++- 1 file changed, 3 insertions(+), 1 deletion(-) diff --git a/coders/dcm.c b/coders/dcm.c index cc211c525..a4a1372b6 100644 --- a/coders/dcm.c +++ b/coders/dcm.c @@ -3778,8 +3778,10 @@ static Image *ReadDCMImage(const ImageInfo *image_info,ExceptionInfo *exception) */ for (i=0; i < (ssize_t) stream_info->remaining; i++) (void) ReadBlobByte(image); - (void)((ReadBlobLSBShort(image) << 16) | ReadBlobLSBShort(image)); + (void) ((ReadBlobLSBShort(image) << 16) | ReadBlobLSBShort(image)); length=(size_t) ReadBlobLSBLong(image); + if (length > GetBlobSize(image)) + ThrowDCMException(CorruptImageError,"InsufficientImageDataInFile"); stream_info->offset_count=length >> 2; if (stream_info->offset_count != 0) { -- 2.40.0