• Home
  • Features
  • Pricing
  • Docs
  • Announcements
  • Sign In

Eyevinn / mp4ff / 34780584245
82%
master: 82%

Build:
Build:
LAST BUILD BRANCH: feat/rsot-box
DEFAULT BRANCH: master
Ran 13 Sep 2026 08:23PM UTC
Jobs 1
Files 213
Run time 1min
Badge
Embed ▾
README BADGES
x

If you need to use a raster PNG badge, change the '.svg' to '.png' in the link

Markdown

Textile

RDoc

HTML

Rst

13 Sep 2026 08:22PM UTC coverage: 82.092% (+0.02%) from 82.072%
34780584245

Pull #581

github

tobbee
fix(mp4): reject ftyp and styp boxes with a payload shorter than 8 bytes

MajorBrand slices data[:4] and MinorVersion slices data[4:8] with no
guard, and CompatibleBrands computes (len(data)-8)/4, which goes
negative. A box declaring an 8-byte size therefore decoded without
error and then panicked on first access:

  $ mp4ff-info short.mp4
  [ftyp] size=8
  panic: runtime error: slice bounds out of range [:4] with capacity 0

Check the payload length at decode, the way DecodeSdtpSR, DecodeMimeSR
and DecodeFrmaSR already do.

styp needs two guards because DecodeStyp does not delegate to
DecodeStypSR the way DecodeFtyp does.
Pull Request #581: fix(mp4): reject ftyp and styp boxes with a payload shorter than 8 bytes

9 of 9 new or added lines in 2 files covered. (100.0%)

22109 of 26932 relevant lines covered (82.09%)

0.82 hits per line

Jobs
ID Job ID Ran Files Coverage
1 34780584245.1 13 Sep 2026 08:23PM UTC 213
82.09
GitHub Action Run
Source Files on build 34780584245
  • Tree
  • List 213
  • Changed 2
  • Source Changed 0
  • Coverage Changed 2
Coverage ∆ File Lines Relevant Covered Missed Hits/Line
  • Back to Repo
  • Pull Request #581
  • PR Base - master (#34779805469)
STATUS · Troubleshooting · Open an Issue · Sales · Support · CAREERS · ENTERPRISE · START FREE TRIAL · SCHEDULE DEMO
ANNOUNCEMENTS · TWITTER · TOS & SLA · Supported CI Services · What's a CI service? · Automated Testing

© 2026 Coveralls, Inc