mirror of
https://github.com/alfg/mp4-rust.git
synced 2024-05-20 01:08:06 +00:00
7cfdffbd71
* Fix several overflows in box and track processing * Use size_of::<Type>() instead of magic numbers * Fix a panic in Mp4Track::read_sample() for one-past-the-end This appears to be a bug unmasked by other changes. read_sample() calls sample_offset() then sample_size(), and assumes that if the former returns Ok then the latter does as well. However, if the sample_id is one past the end, sample_offset() might succeed (it only checks samples _up to_ the given sample_id but not _including_ it) while sample_size() fails (because the sample doesn't exist). read_sample() will then panic. Fix this by duplicating the error propagation (that is currently done for sample_offset) for sample_size, instead of unwrapping. This is a cautious change that fixes the bug; alternatively, having sample_offset() call sample_size() on the given sample_id and propagate any error might also work. * Account for header size in box processing overflow fixes * Ensure that boxes aren't bigger than their containers Together with the entry_count checks, this eliminates several OOMs when reading incorrect mp4 files. * Fix order of arithmetic operations This was due to an incorrect transcription when switching to checked arithmetic, and fixes a bug that could cause attempted lookups of the wrong chunk_id.
114 lines
2.9 KiB
Rust
114 lines
2.9 KiB
Rust
use serde::Serialize;
|
|
use std::io::{Read, Seek, Write};
|
|
|
|
use crate::mp4box::*;
|
|
use crate::mp4box::{hdlr::HdlrBox, mdhd::MdhdBox, minf::MinfBox};
|
|
|
|
#[derive(Debug, Clone, PartialEq, Eq, Default, Serialize)]
|
|
pub struct MdiaBox {
|
|
pub mdhd: MdhdBox,
|
|
pub hdlr: HdlrBox,
|
|
pub minf: MinfBox,
|
|
}
|
|
|
|
impl MdiaBox {
|
|
pub fn get_type(&self) -> BoxType {
|
|
BoxType::MdiaBox
|
|
}
|
|
|
|
pub fn get_size(&self) -> u64 {
|
|
HEADER_SIZE + self.mdhd.box_size() + self.hdlr.box_size() + self.minf.box_size()
|
|
}
|
|
}
|
|
|
|
impl Mp4Box for MdiaBox {
|
|
fn box_type(&self) -> BoxType {
|
|
self.get_type()
|
|
}
|
|
|
|
fn box_size(&self) -> u64 {
|
|
self.get_size()
|
|
}
|
|
|
|
fn to_json(&self) -> Result<String> {
|
|
Ok(serde_json::to_string(&self).unwrap())
|
|
}
|
|
|
|
fn summary(&self) -> Result<String> {
|
|
let s = String::new();
|
|
Ok(s)
|
|
}
|
|
}
|
|
|
|
impl<R: Read + Seek> ReadBox<&mut R> for MdiaBox {
|
|
fn read_box(reader: &mut R, size: u64) -> Result<Self> {
|
|
let start = box_start(reader)?;
|
|
|
|
let mut mdhd = None;
|
|
let mut hdlr = None;
|
|
let mut minf = None;
|
|
|
|
let mut current = reader.stream_position()?;
|
|
let end = start + size;
|
|
while current < end {
|
|
// Get box header.
|
|
let header = BoxHeader::read(reader)?;
|
|
let BoxHeader { name, size: s } = header;
|
|
if s > size {
|
|
return Err(Error::InvalidData(
|
|
"mdia box contains a box with a larger size than it",
|
|
));
|
|
}
|
|
|
|
match name {
|
|
BoxType::MdhdBox => {
|
|
mdhd = Some(MdhdBox::read_box(reader, s)?);
|
|
}
|
|
BoxType::HdlrBox => {
|
|
hdlr = Some(HdlrBox::read_box(reader, s)?);
|
|
}
|
|
BoxType::MinfBox => {
|
|
minf = Some(MinfBox::read_box(reader, s)?);
|
|
}
|
|
_ => {
|
|
// XXX warn!()
|
|
skip_box(reader, s)?;
|
|
}
|
|
}
|
|
|
|
current = reader.stream_position()?;
|
|
}
|
|
|
|
if mdhd.is_none() {
|
|
return Err(Error::BoxNotFound(BoxType::MdhdBox));
|
|
}
|
|
if hdlr.is_none() {
|
|
return Err(Error::BoxNotFound(BoxType::HdlrBox));
|
|
}
|
|
if minf.is_none() {
|
|
return Err(Error::BoxNotFound(BoxType::MinfBox));
|
|
}
|
|
|
|
skip_bytes_to(reader, start + size)?;
|
|
|
|
Ok(MdiaBox {
|
|
mdhd: mdhd.unwrap(),
|
|
hdlr: hdlr.unwrap(),
|
|
minf: minf.unwrap(),
|
|
})
|
|
}
|
|
}
|
|
|
|
impl<W: Write> WriteBox<&mut W> for MdiaBox {
|
|
fn write_box(&self, writer: &mut W) -> Result<u64> {
|
|
let size = self.box_size();
|
|
BoxHeader::new(self.box_type(), size).write(writer)?;
|
|
|
|
self.mdhd.write_box(writer)?;
|
|
self.hdlr.write_box(writer)?;
|
|
self.minf.write_box(writer)?;
|
|
|
|
Ok(size)
|
|
}
|
|
}
|