• Home
  • Features
  • Pricing
  • Docs
  • Announcements
  • Sign In

Eyevinn / mp4ff / 34780679823
82%

Build:
DEFAULT BRANCH: master
Ran 13 Sep 2026 08:25PM UTC
Jobs 1
Files 213
Run time 1min
Badge
Embed ▾
README BADGES
x

If you need to use a raster PNG badge, change the '.svg' to '.png' in the link

Markdown

Textile

RDoc

HTML

Rst

13 Sep 2026 08:24PM UTC coverage: 82.092% (+0.02%) from 82.072%
34780679823

push

github

tobbee
fix(mp4): reject ftyp and styp boxes with a payload shorter than 8 bytes

MajorBrand slices data[:4] and MinorVersion slices data[4:8] with no
guard, and CompatibleBrands computes (len(data)-8)/4, which goes
negative. A box declaring an 8-byte size therefore decoded without
error and then panicked on first access:

  $ mp4ff-info short.mp4
  [ftyp] size=8
  panic: runtime error: slice bounds out of range [:4] with capacity 0

Check the payload length at decode, the way DecodeSdtpSR, DecodeMimeSR
and DecodeFrmaSR already do.

styp needs two guards because DecodeStyp does not delegate to
DecodeStypSR the way DecodeFtyp does.

9 of 9 new or added lines in 2 files covered. (100.0%)

22109 of 26932 relevant lines covered (82.09%)

0.82 hits per line

Jobs
ID Job ID Ran Files Coverage
1 34780679823.1 13 Sep 2026 08:25PM UTC 213
82.09
GitHub Action Run
Source Files on build 34780679823
  • Tree
  • List 213
  • Changed 2
  • Source Changed 0
  • Coverage Changed 2
Coverage ∆ File Lines Relevant Covered Missed Hits/Line
  • Back to Repo
  • 6d67b47d on github
  • Prev Build on master (#34779805469)
  • Next Build on master (#34780961367)
STATUS · Troubleshooting · Open an Issue · Sales · Support · CAREERS · ENTERPRISE · START FREE TRIAL · SCHEDULE DEMO
ANNOUNCEMENTS · TWITTER · TOS & SLA · Supported CI Services · What's a CI service? · Automated Testing

© 2026 Coveralls, Inc