-
The previous implementation would suffer from a read overflow due to a mismatch between the length of psz_comment and comment_size (because of the usage of strndup). These changes make sure that: - psz_comment always refer to a buffer of length comment_size - we do not leak memory on "continues" when encountering unexpected data fixes #17776 fixes #17779 Signed-off-by: Francois Cartegnie <fcvlcdev@free.fr>
e8dde09c