FFmpeg coverage


Directory: ../../../ffmpeg/
File: src/libavformat/id3v2.c
Date: 2026-08-26 01:27:24
Exec Total Coverage
Lines: 504 687 73.4%
Functions: 31 32 96.9%
Branches: 299 478 62.6%

Line Branch Exec Source
1 /*
2 * Copyright (c) 2003 Fabrice Bellard
3 *
4 * This file is part of FFmpeg.
5 *
6 * FFmpeg is free software; you can redistribute it and/or
7 * modify it under the terms of the GNU Lesser General Public
8 * License as published by the Free Software Foundation; either
9 * version 2.1 of the License, or (at your option) any later version.
10 *
11 * FFmpeg is distributed in the hope that it will be useful,
12 * but WITHOUT ANY WARRANTY; without even the implied warranty of
13 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU
14 * Lesser General Public License for more details.
15 *
16 * You should have received a copy of the GNU Lesser General Public
17 * License along with FFmpeg; if not, write to the Free Software
18 * Foundation, Inc., 51 Franklin Street, Fifth Floor, Boston, MA 02110-1301 USA
19 */
20
21 /**
22 * @file
23 * ID3v2 header parser
24 *
25 * Specifications available at:
26 * http://id3.org/Developer_Information
27 */
28
29 #include "config.h"
30 #include "libavutil/attributes.h"
31
32 #if CONFIG_ZLIB
33 #include <zlib.h>
34 #endif
35
36 #include "libavutil/attributes_internal.h"
37 #include "libavutil/avstring.h"
38 #include "libavutil/bprint.h"
39 #include "libavutil/dict.h"
40 #include "libavutil/intreadwrite.h"
41 #include "libavutil/mem.h"
42 #include "libavcodec/png.h"
43 #include "avio_internal.h"
44 #include "avlanguage.h"
45 #include "demux.h"
46 #include "id3v1.h"
47 #include "id3v2.h"
48
49 const AVMetadataConv ff_id3v2_34_metadata_conv[] = {
50 { "COMM", "comment" },
51 { "TALB", "album" },
52 { "TCOM", "composer" },
53 { "TCON", "genre" },
54 { "TCOP", "copyright" },
55 { "TENC", "encoded_by" },
56 { "TIT2", "title" },
57 { "TLAN", "language" },
58 { "TPE1", "artist" },
59 { "TPE2", "album_artist" },
60 { "TPE3", "performer" },
61 { "TPOS", "disc" },
62 { "TPUB", "publisher" },
63 { "TRCK", "track" },
64 { "TSSE", "encoder" },
65 { "USLT", "lyrics" },
66 { 0 }
67 };
68
69 const AVMetadataConv ff_id3v2_4_metadata_conv[] = {
70 { "TCMP", "compilation" },
71 { "TDRC", "date" },
72 { "TDRL", "date" },
73 { "TDEN", "creation_time" },
74 { "TSOA", "album-sort" },
75 { "TSOP", "artist-sort" },
76 { "TSOT", "title-sort" },
77 { "TSST", "disc_subtitle" },
78 { "TIT1", "grouping" },
79 { 0 }
80 };
81
82 static const AVMetadataConv id3v2_2_metadata_conv[] = {
83 { "TAL", "album" },
84 { "TCO", "genre" },
85 { "TCP", "compilation" },
86 { "TT2", "title" },
87 { "TEN", "encoded_by" },
88 { "TP1", "artist" },
89 { "TP2", "album_artist" },
90 { "TP3", "performer" },
91 { "TRK", "track" },
92 { 0 }
93 };
94
95 attribute_nonstring const char ff_id3v2_tags[][4] = {
96 "TALB", "TBPM", "TCOM", "TCON", "TCOP", "TDLY", "TENC", "TEXT",
97 "TFLT", "TIT1", "TIT2", "TIT3", "TKEY", "TLAN", "TLEN", "TMED",
98 "TOAL", "TOFN", "TOLY", "TOPE", "TOWN", "TPE1", "TPE2", "TPE3",
99 "TPE4", "TPOS", "TPUB", "TRCK", "TRSN", "TRSO", "TSRC", "TSSE",
100 { 0 },
101 };
102
103 attribute_nonstring const char ff_id3v2_4_tags[][4] = {
104 "TDEN", "TDOR", "TDRC", "TDRL", "TDTG", "TIPL", "TMCL", "TMOO",
105 "TPRO", "TSOA", "TSOP", "TSOT", "TSST",
106 { 0 },
107 };
108
109 attribute_nonstring const char ff_id3v2_3_tags[][4] = {
110 "TDAT", "TIME", "TORY", "TRDA", "TSIZ", "TYER",
111 { 0 },
112 };
113
114 const char * const ff_id3v2_picture_types[21] = {
115 "Other",
116 "32x32 pixels 'file icon'",
117 "Other file icon",
118 "Cover (front)",
119 "Cover (back)",
120 "Leaflet page",
121 "Media (e.g. label side of CD)",
122 "Lead artist/lead performer/soloist",
123 "Artist/performer",
124 "Conductor",
125 "Band/Orchestra",
126 "Composer",
127 "Lyricist/text writer",
128 "Recording Location",
129 "During recording",
130 "During performance",
131 "Movie/video screen capture",
132 "A bright coloured fish",
133 "Illustration",
134 "Band/artist logotype",
135 "Publisher/Studio logotype",
136 };
137
138 const CodecMime ff_id3v2_mime_tags[] = {
139 { "image/gif", AV_CODEC_ID_GIF },
140 { "image/jpeg", AV_CODEC_ID_MJPEG },
141 { "image/jpg", AV_CODEC_ID_MJPEG },
142 { "image/jxl", AV_CODEC_ID_JPEGXL },
143 { "image/png", AV_CODEC_ID_PNG },
144 { "image/tiff", AV_CODEC_ID_TIFF },
145 { "image/bmp", AV_CODEC_ID_BMP },
146 { "image/webp", AV_CODEC_ID_WEBP },
147 { "JPG", AV_CODEC_ID_MJPEG }, /* ID3v2.2 */
148 { "PNG", AV_CODEC_ID_PNG }, /* ID3v2.2 */
149 { "", AV_CODEC_ID_NONE },
150 };
151
152 24721 int ff_id3v2_match(const uint8_t *buf, const char *magic)
153 {
154 25046 return buf[0] == magic[0] &&
155
2/2
✓ Branch 0 taken 293 times.
✓ Branch 1 taken 32 times.
325 buf[1] == magic[1] &&
156
1/2
✓ Branch 0 taken 293 times.
✗ Branch 1 not taken.
293 buf[2] == magic[2] &&
157
1/2
✓ Branch 0 taken 293 times.
✗ Branch 1 not taken.
293 buf[3] != 0xff &&
158
1/2
✓ Branch 0 taken 293 times.
✗ Branch 1 not taken.
293 buf[4] != 0xff &&
159
1/2
✓ Branch 0 taken 293 times.
✗ Branch 1 not taken.
293 (buf[6] & 0x80) == 0 &&
160
1/2
✓ Branch 0 taken 293 times.
✗ Branch 1 not taken.
293 (buf[7] & 0x80) == 0 &&
161
3/4
✓ Branch 0 taken 325 times.
✓ Branch 1 taken 24396 times.
✓ Branch 2 taken 293 times.
✗ Branch 3 not taken.
25339 (buf[8] & 0x80) == 0 &&
162
1/2
✓ Branch 0 taken 293 times.
✗ Branch 1 not taken.
293 (buf[9] & 0x80) == 0;
163 }
164
165 178 int ff_id3v2_tag_len(const uint8_t *buf)
166 {
167 178 int len = ((buf[6] & 0x7f) << 21) +
168 178 ((buf[7] & 0x7f) << 14) +
169 178 ((buf[8] & 0x7f) << 7) +
170 178 (buf[9] & 0x7f) +
171 ID3v2_HEADER_SIZE;
172
1/2
✗ Branch 0 not taken.
✓ Branch 1 taken 178 times.
178 if (buf[5] & 0x10)
173 len += ID3v2_HEADER_SIZE;
174 178 return len;
175 }
176
177 static unsigned int get_size(AVIOContext *s, int len)
178 {
179 int v = 0;
180 while (len--)
181 v = (v << 7) + (avio_r8(s) & 0x7F);
182 return v;
183 }
184
185 24 static unsigned int size_to_syncsafe(unsigned int size)
186 {
187 24 return (((size) & (0x7f << 0)) >> 0) +
188 24 (((size) & (0x7f << 8)) >> 1) +
189 48 (((size) & (0x7f << 16)) >> 2) +
190 24 (((size) & (0x7f << 24)) >> 3);
191 }
192
193 /* No real verification, only check that the tag consists of
194 * a combination of capital alpha-numerical characters */
195 4 static int is_tag(const char *buf, unsigned int len)
196 {
197
1/2
✗ Branch 0 not taken.
✓ Branch 1 taken 4 times.
4 if (!len)
198 return 0;
199
200
2/2
✓ Branch 0 taken 16 times.
✓ Branch 1 taken 4 times.
20 while (len--)
201
1/2
✓ Branch 0 taken 16 times.
✗ Branch 1 not taken.
16 if ((buf[len] < 'A' ||
202
1/2
✗ Branch 0 not taken.
✓ Branch 1 taken 16 times.
16 buf[len] > 'Z') &&
203 (buf[len] < '0' ||
204 buf[len] > '9'))
205 return 0;
206
207 4 return 1;
208 }
209
210 /**
211 * Return 1 if the tag of length len at the given offset is valid, 0 if not, -1 on error
212 */
213 4 static int check_tag(AVIOContext *s, int offset, unsigned int len)
214 {
215 char tag[4];
216
217
2/4
✓ Branch 0 taken 4 times.
✗ Branch 1 not taken.
✓ Branch 2 taken 4 times.
✗ Branch 3 not taken.
8 if (len > 4 ||
218 4 avio_seek(s, offset, SEEK_SET) < 0 ||
219
1/2
✗ Branch 1 not taken.
✓ Branch 2 taken 4 times.
4 avio_read(s, tag, len) < (int)len)
220 return -1;
221
2/4
✓ Branch 0 taken 4 times.
✗ Branch 1 not taken.
✓ Branch 3 taken 4 times.
✗ Branch 4 not taken.
4 else if (!AV_RB32(tag) || is_tag(tag, len))
222 4 return 1;
223
224 return 0;
225 }
226
227 /**
228 * Free GEOB type extra metadata.
229 */
230 2 static void free_geobtag(void *obj)
231 {
232 2 ID3v2ExtraMetaGEOB *geob = obj;
233 2 av_freep(&geob->mime_type);
234 2 av_freep(&geob->file_name);
235 2 av_freep(&geob->description);
236 2 av_freep(&geob->data);
237 2 }
238
239 /**
240 * Decode characters to UTF-8 according to encoding type. The decoded buffer is
241 * always null terminated. Stop reading when either *maxread bytes are read from
242 * pb or U+0000 character is found.
243 *
244 * @param dst Pointer where the address of the buffer with the decoded bytes is
245 * stored. Buffer must be freed by caller.
246 * @param maxread Pointer to maximum number of characters to read from the
247 * AVIOContext. After execution the value is decremented by the number of bytes
248 * actually read.
249 * @returns 0 if no error occurred, dst is uninitialized on error
250 */
251 723 static int decode_str(AVFormatContext *s, AVIOContext *pb, int encoding,
252 uint8_t **dst, int *maxread)
253 {
254 int ret;
255 uint8_t tmp;
256 723 uint32_t ch = 1;
257 723 int left = *maxread, dynsize;
258 723 unsigned int (*get)(AVIOContext*) = avio_rb16;
259 AVIOContext *dynbuf;
260
261
1/2
✗ Branch 1 not taken.
✓ Branch 2 taken 723 times.
723 if ((ret = avio_open_dyn_buf(&dynbuf)) < 0) {
262 av_log(s, AV_LOG_ERROR, "Error opening memory stream\n");
263 return ret;
264 }
265
266
2/2
✓ Branch 0 taken 32 times.
✓ Branch 1 taken 691 times.
723 if (left == 0)
267 32 goto end;
268
269
4/5
✓ Branch 0 taken 295 times.
✓ Branch 1 taken 12 times.
✓ Branch 2 taken 18 times.
✓ Branch 3 taken 366 times.
✗ Branch 4 not taken.
691 switch (encoding) {
270 295 case ID3v2_ENCODING_ISO8859:
271
4/4
✓ Branch 0 taken 5475 times.
✓ Branch 1 taken 155 times.
✓ Branch 2 taken 5335 times.
✓ Branch 3 taken 140 times.
5630 while (left && ch) {
272 5335 ch = avio_r8(pb);
273
4/4
✓ Branch 0 taken 5330 times.
✓ Branch 1 taken 5 times.
✓ Branch 5 taken 5 times.
✓ Branch 6 taken 5 times.
5340 PUT_UTF8(ch, tmp, avio_w8(dynbuf, tmp);)
274 5335 left--;
275 }
276 295 break;
277
278 12 case ID3v2_ENCODING_UTF16BOM:
279
1/2
✗ Branch 0 not taken.
✓ Branch 1 taken 12 times.
12 if ((left -= 2) < 0) {
280 av_log(s, AV_LOG_ERROR, "Cannot read BOM value, input too short %d\n", left);
281 ffio_free_dyn_buf(&dynbuf);
282 *dst = NULL;
283 return AVERROR_INVALIDDATA;
284 }
285 12 uint16_t bom = avio_rb16(pb);
286
2/4
✓ Branch 0 taken 11 times.
✗ Branch 1 not taken.
✓ Branch 2 taken 1 times.
✗ Branch 3 not taken.
12 switch (bom) {
287 11 case 0xfffe:
288 11 get = avio_rl16;
289 11 break;
290 case 0xfeff:
291 break;
292 1 case 0: // empty string without bom
293 1 goto end;
294 default:
295 av_log(s, AV_LOG_ERROR, "Incorrect BOM value: 0x%x\n", bom);
296 ffio_free_dyn_buf(&dynbuf);
297 *dst = NULL;
298 *maxread = left;
299 return AVERROR_INVALIDDATA;
300 }
301 av_fallthrough;
302
303 case ID3v2_ENCODING_UTF16BE:
304
4/4
✓ Branch 0 taken 239 times.
✓ Branch 1 taken 19 times.
✓ Branch 2 taken 229 times.
✓ Branch 3 taken 10 times.
258 while ((left > 1) && ch) {
305
2/10
✓ Branch 0 taken 229 times.
✗ Branch 1 not taken.
✗ Branch 3 not taken.
✓ Branch 4 taken 229 times.
✗ Branch 5 not taken.
✗ Branch 6 not taken.
✗ Branch 8 not taken.
✗ Branch 9 not taken.
✗ Branch 10 not taken.
✗ Branch 11 not taken.
229 GET_UTF16(ch, ((left -= 2) >= 0 ? get(pb) : 0), break;)
306
4/4
✓ Branch 0 taken 162 times.
✓ Branch 1 taken 67 times.
✓ Branch 5 taken 67 times.
✓ Branch 6 taken 67 times.
296 PUT_UTF8(ch, tmp, avio_w8(dynbuf, tmp);)
307 }
308
1/2
✗ Branch 0 not taken.
✓ Branch 1 taken 29 times.
29 if (left < 0)
309 left += 2; /* did not read last char from pb */
310 29 break;
311
312 366 case ID3v2_ENCODING_UTF8:
313
4/4
✓ Branch 0 taken 4095 times.
✓ Branch 1 taken 296 times.
✓ Branch 2 taken 4025 times.
✓ Branch 3 taken 70 times.
4391 while (left && ch) {
314 4025 ch = avio_r8(pb);
315 4025 avio_w8(dynbuf, ch);
316 4025 left--;
317 }
318 366 break;
319 default:
320 av_log(s, AV_LOG_WARNING, "Unknown encoding %d\n", encoding);
321 }
322
323 723 end:
324
2/2
✓ Branch 0 taken 78 times.
✓ Branch 1 taken 645 times.
723 if (ch)
325 78 avio_w8(dynbuf, 0);
326
327 723 dynsize = avio_close_dyn_buf(dynbuf, dst);
328
1/2
✗ Branch 0 not taken.
✓ Branch 1 taken 723 times.
723 if (dynsize <= 0) {
329 av_freep(dst);
330 return AVERROR(ENOMEM);
331 }
332 723 *maxread = left;
333
334 723 return 0;
335 }
336
337 /**
338 * Parse a text tag.
339 */
340 381 static void read_ttag(AVFormatContext *s, AVIOContext *pb, int taglen,
341 AVDictionary **metadata, const char *key)
342 {
343 uint8_t *dst;
344 381 int encoding, dict_flags = AV_DICT_DONT_OVERWRITE | AV_DICT_DONT_STRDUP_VAL;
345 unsigned genre;
346
347
1/2
✗ Branch 0 not taken.
✓ Branch 1 taken 381 times.
381 if (taglen < 1)
348 return;
349
350 381 encoding = avio_r8(pb);
351 381 taglen--; /* account for encoding type byte */
352
353
1/2
✗ Branch 1 not taken.
✓ Branch 2 taken 381 times.
381 if (decode_str(s, pb, encoding, &dst, &taglen) < 0) {
354 av_log(s, AV_LOG_ERROR, "Error reading frame %s, skipped\n", key);
355 return;
356 }
357
358
3/4
✓ Branch 0 taken 356 times.
✓ Branch 1 taken 25 times.
✗ Branch 2 not taken.
✓ Branch 3 taken 356 times.
381 if (!(strcmp(key, "TCON") && strcmp(key, "TCO")) &&
359
2/4
✓ Branch 0 taken 25 times.
✗ Branch 1 not taken.
✗ Branch 2 not taken.
✓ Branch 3 taken 25 times.
25 (sscanf(dst, "(%d)", &genre) == 1 || sscanf(dst, "%d", &genre) == 1) &&
360 genre <= ID3v1_GENRE_MAX) {
361 av_freep(&dst);
362 dst = av_strdup(ff_id3v1_genre_str[genre]);
363
3/4
✓ Branch 0 taken 346 times.
✓ Branch 1 taken 35 times.
✗ Branch 2 not taken.
✓ Branch 3 taken 346 times.
381 } else if (!(strcmp(key, "TXXX") && strcmp(key, "TXX"))) {
364 /* dst now contains the key, need to get value */
365 35 key = dst;
366
1/2
✗ Branch 1 not taken.
✓ Branch 2 taken 35 times.
35 if (decode_str(s, pb, encoding, &dst, &taglen) < 0) {
367 av_log(s, AV_LOG_ERROR, "Error reading frame %s, skipped\n", key);
368 av_freep(&key);
369 return;
370 }
371 35 dict_flags |= AV_DICT_DONT_STRDUP_KEY;
372
2/2
✓ Branch 0 taken 8 times.
✓ Branch 1 taken 338 times.
346 } else if (!*dst)
373 8 av_freep(&dst);
374
375
2/2
✓ Branch 0 taken 373 times.
✓ Branch 1 taken 8 times.
381 if (dst)
376 373 av_dict_set(metadata, key, dst, dict_flags);
377 }
378
379 /**
380 * Parse a lang descr tag such as COMM and USLT.
381 *
382 * A non-empty descriptor produces "<base>-<descriptor>-<lang>" keys.
383 */
384 108 static void read_lang_descr_tag(AVFormatContext *s, AVIOContext *pb,
385 const char *key, int taglen,
386 AVDictionary **metadata)
387 {
388 108 char *full_key = NULL;
389 108 uint8_t *dst, *descriptor = NULL;
390 int encoding;
391 108 char language[4] = {0};
392 108 int flags = AV_DICT_DONT_OVERWRITE | AV_DICT_DONT_STRDUP_VAL;
393
394
1/2
✗ Branch 0 not taken.
✓ Branch 1 taken 108 times.
108 if (taglen < 4)
395 return;
396
397 108 encoding = avio_r8(pb);
398
399
1/2
✗ Branch 1 not taken.
✓ Branch 2 taken 108 times.
108 if (avio_read(pb, language, 3) < 3) {
400 av_log(s, AV_LOG_ERROR, "Error reading %s frame language, skipped\n", key);
401 return;
402 }
403
404
2/2
✓ Branch 0 taken 324 times.
✓ Branch 1 taken 108 times.
432 for (char *p = language; *p; p++)
405 324 *p = av_tolower(*p);
406
407 // Some libraries set XXX for unknown language.
408
2/2
✓ Branch 0 taken 104 times.
✓ Branch 1 taken 4 times.
108 if (!strcmp(language, "xxx") ||
409 // By convention, "und" is represented as a key with
410 // no language, e.g. "comment" or "lyrics"
411
2/2
✓ Branch 0 taken 21 times.
✓ Branch 1 taken 83 times.
104 !strcmp(language, "und"))
412 25 memset(language, 0, sizeof(language));
413
414 108 taglen -= 4;
415
416
1/2
✗ Branch 1 not taken.
✓ Branch 2 taken 108 times.
108 if (decode_str(s, pb, encoding, &descriptor, &taglen) < 0) {
417 av_log(s, AV_LOG_ERROR, "Error reading %s frame descriptor, skipped\n", key);
418 return;
419 }
420
421
1/2
✗ Branch 1 not taken.
✓ Branch 2 taken 108 times.
108 if (decode_str(s, pb, encoding, &dst, &taglen) < 0) {
422 av_freep(&descriptor);
423 av_log(s, AV_LOG_ERROR, "Error reading %s frame, skipped\n", key);
424 return;
425 }
426
427
3/4
✓ Branch 0 taken 108 times.
✗ Branch 1 not taken.
✓ Branch 2 taken 79 times.
✓ Branch 3 taken 29 times.
108 if (descriptor && *descriptor) {
428 #if FF_API_OLD_ID3V2_COMMENT
429
3/4
✓ Branch 0 taken 79 times.
✗ Branch 1 not taken.
✓ Branch 2 taken 5 times.
✓ Branch 3 taken 74 times.
79 if (s && (s->flags & AVFMT_FLAG_LEGACY_ID3V2_COMM_KEYS) &&
430
1/2
✓ Branch 0 taken 5 times.
✗ Branch 1 not taken.
5 !strcmp(key, "comment")) {
431 5 av_log(s, AV_LOG_WARNING,
432 "Deprecated: COMM descriptor '%s' exported as metadata key. "
433 "This will be removed in a future version.\n", descriptor);
434 5 av_dict_set(metadata, (const char *)descriptor, (const char *)dst,
435 AV_DICT_DONT_OVERWRITE);
436 }
437 #endif
438 79 int descr_len = strlen((char *)descriptor);
439
2/2
✓ Branch 1 taken 71 times.
✓ Branch 2 taken 8 times.
79 if (av_strnlen(language, 3) > 0)
440 71 full_key = av_asprintf("%s-%s-%s", key, descriptor, language);
441 // descr = "eng"
442
4/4
✓ Branch 0 taken 2 times.
✓ Branch 1 taken 6 times.
✓ Branch 2 taken 1 times.
✓ Branch 3 taken 1 times.
10 else if ((descr_len == 3 &&
443
2/2
✓ Branch 1 taken 4 times.
✓ Branch 2 taken 3 times.
9 ff_convert_lang_to((char *)descriptor, AV_LANG_ISO639_2_BIBL)) ||
444 // descr = Foo-eng
445
4/4
✓ Branch 0 taken 2 times.
✓ Branch 1 taken 2 times.
✓ Branch 2 taken 1 times.
✓ Branch 3 taken 1 times.
6 (descr_len > 4 && descriptor[descr_len-4] == '-' &&
446 2 ff_convert_lang_to((char *)descriptor+descr_len-3, AV_LANG_ISO639_2_BIBL))) {
447 /* Descriptor looks like a lang code: add trailing lang to
448 * keep the key unambiguous on the write side. */
449 2 full_key = av_asprintf("%s-%s-und", key, descriptor);
450 } else
451 6 full_key = av_asprintf("%s-%s", key, descriptor);
452
1/2
✗ Branch 0 not taken.
✓ Branch 1 taken 79 times.
79 if (!full_key) {
453 av_freep(&descriptor);
454 av_freep(&dst);
455 return;
456 }
457 79 key = full_key;
458
2/2
✓ Branch 1 taken 12 times.
✓ Branch 2 taken 17 times.
29 } else if (av_strnlen(language, 3) == 3) {
459 12 full_key = av_asprintf("%s-%s", key, language);
460
1/2
✗ Branch 0 not taken.
✓ Branch 1 taken 12 times.
12 if (!full_key) {
461 av_freep(&descriptor);
462 av_freep(&dst);
463 return;
464 }
465 12 key = full_key;
466 }
467
468 108 av_freep(&descriptor);
469 108 av_dict_set(metadata, key, (const char *)dst, flags);
470 108 av_freep(&full_key);
471 }
472
473 typedef struct ExtraMetaList {
474 ID3v2ExtraMeta *head, *tail;
475 } ExtraMetaList;
476
477 87 static void list_append(ID3v2ExtraMeta *new_elem, ExtraMetaList *list)
478 {
479
2/2
✓ Branch 0 taken 40 times.
✓ Branch 1 taken 47 times.
87 if (list->tail)
480 40 list->tail->next = new_elem;
481 else
482 47 list->head = new_elem;
483 87 list->tail = new_elem;
484 87 }
485
486 /**
487 * Parse GEOB tag into a ID3v2ExtraMetaGEOB struct.
488 */
489 2 static void read_geobtag(AVFormatContext *s, AVIOContext *pb, int taglen,
490 const char *tag, ExtraMetaList *extra_meta, int isv34)
491 {
492 2 ID3v2ExtraMetaGEOB *geob_data = NULL;
493 2 ID3v2ExtraMeta *new_extra = NULL;
494 char encoding;
495 unsigned int len;
496
497
1/2
✗ Branch 0 not taken.
✓ Branch 1 taken 2 times.
2 if (taglen < 1)
498 return;
499
500 2 new_extra = av_mallocz(sizeof(ID3v2ExtraMeta));
501
1/2
✗ Branch 0 not taken.
✓ Branch 1 taken 2 times.
2 if (!new_extra) {
502 av_log(s, AV_LOG_ERROR, "Failed to alloc %zu bytes\n",
503 sizeof(ID3v2ExtraMeta));
504 return;
505 }
506
507 2 geob_data = &new_extra->data.geob;
508
509 /* read encoding type byte */
510 2 encoding = avio_r8(pb);
511 2 taglen--;
512
513 /* read MIME type (always ISO-8859) */
514
1/2
✓ Branch 1 taken 2 times.
✗ Branch 2 not taken.
2 if (decode_str(s, pb, ID3v2_ENCODING_ISO8859, &geob_data->mime_type,
515 2 &taglen) < 0 ||
516
1/2
✗ Branch 0 not taken.
✓ Branch 1 taken 2 times.
2 taglen <= 0)
517 goto fail;
518
519 /* read file name */
520
1/2
✓ Branch 1 taken 2 times.
✗ Branch 2 not taken.
2 if (decode_str(s, pb, encoding, &geob_data->file_name, &taglen) < 0 ||
521
1/2
✗ Branch 0 not taken.
✓ Branch 1 taken 2 times.
2 taglen <= 0)
522 goto fail;
523
524 /* read content description */
525
1/2
✓ Branch 1 taken 2 times.
✗ Branch 2 not taken.
2 if (decode_str(s, pb, encoding, &geob_data->description, &taglen) < 0 ||
526
1/2
✗ Branch 0 not taken.
✓ Branch 1 taken 2 times.
2 taglen < 0)
527 goto fail;
528
529
1/2
✓ Branch 0 taken 2 times.
✗ Branch 1 not taken.
2 if (taglen) {
530 /* save encapsulated binary data */
531 2 geob_data->data = av_malloc(taglen);
532
1/2
✗ Branch 0 not taken.
✓ Branch 1 taken 2 times.
2 if (!geob_data->data) {
533 av_log(s, AV_LOG_ERROR, "Failed to alloc %d bytes\n", taglen);
534 goto fail;
535 }
536
1/2
✗ Branch 1 not taken.
✓ Branch 2 taken 2 times.
2 if ((len = avio_read(pb, geob_data->data, taglen)) < taglen)
537 av_log(s, AV_LOG_WARNING,
538 "Error reading GEOB frame, data truncated.\n");
539 2 geob_data->datasize = len;
540 } else {
541 geob_data->data = NULL;
542 geob_data->datasize = 0;
543 }
544
545 /* add data to the list */
546 2 new_extra->tag = "GEOB";
547 2 list_append(new_extra, extra_meta);
548
549 2 return;
550
551 fail:
552 av_log(s, AV_LOG_ERROR, "Error reading frame %s, skipped\n", tag);
553 free_geobtag(geob_data);
554 av_free(new_extra);
555 return;
556 }
557
558 8 static int is_number(const char *str)
559 {
560
3/4
✓ Branch 0 taken 32 times.
✓ Branch 1 taken 8 times.
✓ Branch 2 taken 32 times.
✗ Branch 3 not taken.
40 while (*str >= '0' && *str <= '9')
561 32 str++;
562 8 return !*str;
563 }
564
565 1646 static AVDictionaryEntry *get_date_tag(AVDictionary *m, const char *tag)
566 {
567 AVDictionaryEntry *t;
568
2/2
✓ Branch 1 taken 8 times.
✓ Branch 2 taken 1638 times.
1646 if ((t = av_dict_get(m, tag, NULL, AV_DICT_MATCH_CASE)) &&
569
2/4
✓ Branch 0 taken 8 times.
✗ Branch 1 not taken.
✓ Branch 3 taken 8 times.
✗ Branch 4 not taken.
8 strlen(t->value) == 4 && is_number(t->value))
570 8 return t;
571 1638 return NULL;
572 }
573
574 819 static void merge_date(AVDictionary **m)
575 {
576 AVDictionaryEntry *t;
577 819 char date[17] = { 0 }; // YYYY-MM-DD hh:mm
578
579
3/4
✓ Branch 1 taken 813 times.
✓ Branch 2 taken 6 times.
✓ Branch 3 taken 813 times.
✗ Branch 4 not taken.
1632 if (!(t = get_date_tag(*m, "TYER")) &&
580 813 !(t = get_date_tag(*m, "TYE")))
581 813 return;
582 6 av_strlcpy(date, t->value, 5);
583 6 av_dict_set(m, "TYER", NULL, 0);
584 6 av_dict_set(m, "TYE", NULL, 0);
585
586
3/4
✓ Branch 1 taken 4 times.
✓ Branch 2 taken 2 times.
✓ Branch 3 taken 4 times.
✗ Branch 4 not taken.
10 if (!(t = get_date_tag(*m, "TDAT")) &&
587 4 !(t = get_date_tag(*m, "TDA")))
588 4 goto finish;
589 2 snprintf(date + 4, sizeof(date) - 4, "-%.2s-%.2s", t->value + 2, t->value);
590 2 av_dict_set(m, "TDAT", NULL, 0);
591 2 av_dict_set(m, "TDA", NULL, 0);
592
593
2/4
✓ Branch 1 taken 2 times.
✗ Branch 2 not taken.
✓ Branch 3 taken 2 times.
✗ Branch 4 not taken.
4 if (!(t = get_date_tag(*m, "TIME")) &&
594 2 !(t = get_date_tag(*m, "TIM")))
595 2 goto finish;
596 snprintf(date + 10, sizeof(date) - 10,
597 " %.2s:%.2s", t->value, t->value + 2);
598 av_dict_set(m, "TIME", NULL, 0);
599 av_dict_set(m, "TIM", NULL, 0);
600
601 6 finish:
602
1/2
✓ Branch 0 taken 6 times.
✗ Branch 1 not taken.
6 if (date[0])
603 6 av_dict_set(m, "date", date, 0);
604 }
605
606 26 static void free_apic(void *obj)
607 {
608 26 ID3v2ExtraMetaAPIC *apic = obj;
609 26 av_buffer_unref(&apic->buf);
610 26 av_freep(&apic->description);
611 26 }
612
613 26 static void rstrip_spaces(char *buf)
614 {
615 26 size_t len = strlen(buf);
616
3/4
✓ Branch 0 taken 10 times.
✓ Branch 1 taken 16 times.
✗ Branch 2 not taken.
✓ Branch 3 taken 10 times.
26 while (len > 0 && buf[len - 1] == ' ')
617 buf[--len] = 0;
618 26 }
619
620 26 static void read_apic(AVFormatContext *s, AVIOContext *pb, int taglen,
621 const char *tag, ExtraMetaList *extra_meta, int isv34)
622 {
623 int enc, pic_type;
624 26 char mimetype[64] = {0};
625 26 const CodecMime *mime = ff_id3v2_mime_tags;
626 26 enum AVCodecID id = AV_CODEC_ID_NONE;
627 26 ID3v2ExtraMetaAPIC *apic = NULL;
628 26 ID3v2ExtraMeta *new_extra = NULL;
629 26 int64_t end = avio_tell(pb) + taglen;
630
631
2/6
✓ Branch 0 taken 26 times.
✗ Branch 1 not taken.
✗ Branch 2 not taken.
✓ Branch 3 taken 26 times.
✗ Branch 4 not taken.
✗ Branch 5 not taken.
26 if (taglen <= 4 || (!isv34 && taglen <= 6))
632 goto fail;
633
634 26 new_extra = av_mallocz(sizeof(*new_extra));
635
1/2
✗ Branch 0 not taken.
✓ Branch 1 taken 26 times.
26 if (!new_extra)
636 goto fail;
637
638 26 apic = &new_extra->data.apic;
639
640 26 enc = avio_r8(pb);
641 26 taglen--;
642
643 /* mimetype */
644
1/2
✓ Branch 0 taken 26 times.
✗ Branch 1 not taken.
26 if (isv34) {
645 26 int ret = avio_get_str(pb, taglen, mimetype, sizeof(mimetype));
646
2/4
✓ Branch 0 taken 26 times.
✗ Branch 1 not taken.
✗ Branch 2 not taken.
✓ Branch 3 taken 26 times.
26 if (ret < 0 || ret >= taglen)
647 goto fail;
648 26 taglen -= ret;
649 } else {
650 if (avio_read(pb, mimetype, 3) < 0)
651 goto fail;
652
653 mimetype[3] = 0;
654 taglen -= 3;
655 }
656
657
1/2
✓ Branch 0 taken 93 times.
✗ Branch 1 not taken.
93 while (mime->id != AV_CODEC_ID_NONE) {
658
2/2
✓ Branch 1 taken 26 times.
✓ Branch 2 taken 67 times.
93 if (!av_strncasecmp(mime->str, mimetype, sizeof(mimetype))) {
659 26 id = mime->id;
660 26 break;
661 }
662 67 mime++;
663 }
664
1/2
✗ Branch 0 not taken.
✓ Branch 1 taken 26 times.
26 if (id == AV_CODEC_ID_NONE) {
665 av_log(s, AV_LOG_WARNING,
666 "Unknown attached picture mimetype: %s, skipping.\n", mimetype);
667 goto fail;
668 }
669 26 apic->id = id;
670
671 /* picture type */
672 26 pic_type = avio_r8(pb);
673 26 taglen--;
674
2/4
✓ Branch 0 taken 26 times.
✗ Branch 1 not taken.
✗ Branch 2 not taken.
✓ Branch 3 taken 26 times.
26 if (pic_type < 0 || pic_type >= FF_ARRAY_ELEMS(ff_id3v2_picture_types)) {
675 av_log(s, AV_LOG_WARNING, "Unknown attached picture type %d.\n",
676 pic_type);
677 pic_type = 0;
678 }
679 26 apic->type = ff_id3v2_picture_types[pic_type];
680
681 /* description and picture data */
682
1/2
✗ Branch 1 not taken.
✓ Branch 2 taken 26 times.
26 if (decode_str(s, pb, enc, &apic->description, &taglen) < 0) {
683 av_log(s, AV_LOG_ERROR,
684 "Error decoding attached picture description.\n");
685 goto fail;
686 }
687
688 26 apic->buf = av_buffer_alloc(taglen + AV_INPUT_BUFFER_PADDING_SIZE);
689
3/6
✓ Branch 0 taken 26 times.
✗ Branch 1 not taken.
✓ Branch 2 taken 26 times.
✗ Branch 3 not taken.
✗ Branch 5 not taken.
✓ Branch 6 taken 26 times.
26 if (!apic->buf || !taglen || avio_read(pb, apic->buf->data, taglen) != taglen)
690 goto fail;
691 26 memset(apic->buf->data + taglen, 0, AV_INPUT_BUFFER_PADDING_SIZE);
692
693 26 new_extra->tag = "APIC";
694
695 // The description must be unique, and some ID3v2 tag writers add spaces
696 // to write several APIC entries with the same description.
697 26 rstrip_spaces(apic->description);
698 26 list_append(new_extra, extra_meta);
699
700 26 return;
701
702 fail:
703 if (apic)
704 free_apic(apic);
705 av_freep(&new_extra);
706 avio_seek(pb, end, SEEK_SET);
707 }
708
709 10 static void free_chapter(void *obj)
710 {
711 10 ID3v2ExtraMetaCHAP *chap = obj;
712 10 av_freep(&chap->element_id);
713 10 av_dict_free(&chap->meta);
714 10 }
715
716 10 static void read_chapter(AVFormatContext *s, AVIOContext *pb, int len,
717 const char *ttag, ExtraMetaList *extra_meta, int isv34)
718 {
719 int taglen;
720 char tag[5];
721 10 ID3v2ExtraMeta *new_extra = NULL;
722 10 ID3v2ExtraMetaCHAP *chap = NULL;
723
724 10 new_extra = av_mallocz(sizeof(*new_extra));
725
1/2
✗ Branch 0 not taken.
✓ Branch 1 taken 10 times.
10 if (!new_extra)
726 10 return;
727
728 10 chap = &new_extra->data.chap;
729
730
1/2
✗ Branch 1 not taken.
✓ Branch 2 taken 10 times.
10 if (decode_str(s, pb, 0, &chap->element_id, &len) < 0)
731 goto fail;
732
733
1/2
✗ Branch 0 not taken.
✓ Branch 1 taken 10 times.
10 if (len < 16)
734 goto fail;
735
736 10 chap->start = avio_rb32(pb);
737 10 chap->end = avio_rb32(pb);
738 10 avio_skip(pb, 8);
739
740 10 len -= 16;
741
2/2
✓ Branch 0 taken 18 times.
✓ Branch 1 taken 10 times.
28 while (len > 10) {
742
1/2
✗ Branch 1 not taken.
✓ Branch 2 taken 18 times.
18 if (avio_read(pb, tag, 4) < 4)
743 goto fail;
744 18 tag[4] = 0;
745 18 taglen = avio_rb32(pb);
746 18 avio_skip(pb, 2);
747 18 len -= 10;
748
2/4
✓ Branch 0 taken 18 times.
✗ Branch 1 not taken.
✗ Branch 2 not taken.
✓ Branch 3 taken 18 times.
18 if (taglen < 0 || taglen > len)
749 goto fail;
750
1/2
✓ Branch 0 taken 18 times.
✗ Branch 1 not taken.
18 if (tag[0] == 'T')
751 18 read_ttag(s, pb, taglen, &chap->meta, tag);
752 else
753 avio_skip(pb, taglen);
754 18 len -= taglen;
755 }
756
757 10 ff_metadata_conv(&chap->meta, NULL, ff_id3v2_34_metadata_conv);
758 10 ff_metadata_conv(&chap->meta, NULL, ff_id3v2_4_metadata_conv);
759
760 10 new_extra->tag = "CHAP";
761 10 list_append(new_extra, extra_meta);
762
763 10 return;
764
765 fail:
766 free_chapter(chap);
767 av_freep(&new_extra);
768 }
769
770 49 static void free_priv(void *obj)
771 {
772 49 ID3v2ExtraMetaPRIV *priv = obj;
773 49 av_freep(&priv->owner);
774 49 av_freep(&priv->data);
775 49 }
776
777 49 static void read_priv(AVFormatContext *s, AVIOContext *pb, int taglen,
778 const char *tag, ExtraMetaList *extra_meta, int isv34)
779 {
780 ID3v2ExtraMeta *meta;
781 ID3v2ExtraMetaPRIV *priv;
782
783 49 meta = av_mallocz(sizeof(*meta));
784
1/2
✗ Branch 0 not taken.
✓ Branch 1 taken 49 times.
49 if (!meta)
785 49 return;
786
787 49 priv = &meta->data.priv;
788
789
1/2
✗ Branch 1 not taken.
✓ Branch 2 taken 49 times.
49 if (decode_str(s, pb, ID3v2_ENCODING_ISO8859, &priv->owner, &taglen) < 0)
790 goto fail;
791
792 49 priv->data = av_malloc(taglen);
793
1/2
✗ Branch 0 not taken.
✓ Branch 1 taken 49 times.
49 if (!priv->data)
794 goto fail;
795
796 49 priv->datasize = taglen;
797
798
1/2
✗ Branch 1 not taken.
✓ Branch 2 taken 49 times.
49 if (avio_read(pb, priv->data, priv->datasize) != priv->datasize)
799 goto fail;
800
801 49 meta->tag = "PRIV";
802 49 list_append(meta, extra_meta);
803
804 49 return;
805
806 fail:
807 free_priv(priv);
808 av_freep(&meta);
809 }
810
811 typedef struct ID3v2EMFunc {
812 const char *tag3;
813 const char *tag4;
814 void (*read)(AVFormatContext *s, AVIOContext *pb, int taglen,
815 const char *tag, ExtraMetaList *extra_meta,
816 int isv34);
817 void (*free)(void *obj);
818 } ID3v2EMFunc;
819
820 static const ID3v2EMFunc id3v2_extra_meta_funcs[] = {
821 { "GEO", "GEOB", read_geobtag, free_geobtag },
822 { "PIC", "APIC", read_apic, free_apic },
823 { "CHAP","CHAP", read_chapter, free_chapter },
824 { "PRIV","PRIV", read_priv, free_priv },
825 { NULL }
826 };
827
828 /**
829 * Get the corresponding ID3v2EMFunc struct for a tag.
830 * @param isv34 Determines if v2.2 or v2.3/4 strings are used
831 * @return A pointer to the ID3v2EMFunc struct if found, NULL otherwise.
832 */
833 176 static const ID3v2EMFunc *get_extra_meta_func(const char *tag, int isv34)
834 {
835 176 int i = 0;
836
2/2
✓ Branch 0 taken 568 times.
✓ Branch 1 taken 2 times.
570 while (id3v2_extra_meta_funcs[i].tag3) {
837
5/8
✓ Branch 0 taken 568 times.
✗ Branch 1 not taken.
✓ Branch 2 taken 568 times.
✗ Branch 3 not taken.
✓ Branch 4 taken 568 times.
✗ Branch 5 not taken.
✓ Branch 6 taken 174 times.
✓ Branch 7 taken 394 times.
568 if (tag && !memcmp(tag,
838 (isv34 ? id3v2_extra_meta_funcs[i].tag4 :
839 id3v2_extra_meta_funcs[i].tag3),
840 (isv34 ? 4 : 3)))
841 174 return &id3v2_extra_meta_funcs[i];
842 394 i++;
843 }
844 2 return NULL;
845 }
846
847 115 static void id3v2_parse(AVIOContext *pb, AVDictionary **metadata,
848 AVFormatContext *s, int len, uint8_t version,
849 uint8_t flags, ExtraMetaList *extra_meta)
850 {
851 int isv34, unsync;
852 unsigned tlen;
853 char tag[5];
854 115 int64_t next, end = avio_tell(pb);
855 int taghdrlen;
856 115 const char *reason = NULL;
857 FFIOContext pb_local;
858 AVIOContext *pbx;
859 115 unsigned char *buffer = NULL;
860 115 int buffer_size = 0;
861 115 const ID3v2EMFunc *extra_func = NULL;
862 115 unsigned char *uncompressed_buffer = NULL;
863 115 av_unused int uncompressed_buffer_size = 0;
864 const char *comm_frame;
865
866
1/2
✗ Branch 0 not taken.
✓ Branch 1 taken 115 times.
115 if (end > INT64_MAX - len - 10)
867 return;
868 115 end += len;
869
870 115 av_log(s, AV_LOG_DEBUG, "id3v2 ver:%d flags:%02X len:%d\n", version, flags, len);
871
872
2/3
✓ Branch 0 taken 14 times.
✓ Branch 1 taken 101 times.
✗ Branch 2 not taken.
115 switch (version) {
873 14 case 2:
874
1/2
✗ Branch 0 not taken.
✓ Branch 1 taken 14 times.
14 if (flags & 0x40) {
875 reason = "compression";
876 goto error;
877 }
878 14 isv34 = 0;
879 14 taghdrlen = 6;
880 14 comm_frame = "COM";
881 14 break;
882
883 101 case 3:
884 case 4:
885 101 isv34 = 1;
886 101 taghdrlen = 10;
887 101 comm_frame = "COMM";
888 101 break;
889
890 default:
891 reason = "version";
892 goto error;
893 }
894
895 115 unsync = flags & 0x80;
896
897
3/4
✓ Branch 0 taken 101 times.
✓ Branch 1 taken 14 times.
✗ Branch 2 not taken.
✓ Branch 3 taken 101 times.
115 if (isv34 && flags & 0x40) { /* Extended header present, just skip over it */
898 int extlen = get_size(pb, 4);
899 if (version == 4)
900 /* In v2.4 the length includes the length field we just read. */
901 extlen -= 4;
902
903 if (extlen < 0) {
904 reason = "invalid extended header length";
905 goto error;
906 }
907 avio_skip(pb, extlen);
908 len -= extlen + 4;
909 if (len < 0) {
910 reason = "extended header too long.";
911 goto error;
912 }
913 }
914
915
2/2
✓ Branch 0 taken 7190 times.
✓ Branch 1 taken 114 times.
7304 while (len >= taghdrlen) {
916 7190 unsigned int tflags = 0;
917 7190 int tunsync = 0;
918 7190 int tcomp = 0;
919 7190 int tencr = 0;
920 av_unused unsigned long dlen;
921
922
2/2
✓ Branch 0 taken 2920 times.
✓ Branch 1 taken 4270 times.
7190 if (isv34) {
923
2/2
✓ Branch 1 taken 1 times.
✓ Branch 2 taken 2919 times.
2920 if (avio_read(pb, tag, 4) < 4)
924 1 break;
925 2919 tag[4] = 0;
926
2/2
✓ Branch 0 taken 1405 times.
✓ Branch 1 taken 1514 times.
2919 if (version == 3) {
927 1405 tlen = avio_rb32(pb);
928 } else {
929 /* some encoders incorrectly uses v3 sizes instead of syncsafe ones
930 * so check the next tag to see which one to use */
931 1514 tlen = avio_rb32(pb);
932
2/2
✓ Branch 0 taken 20 times.
✓ Branch 1 taken 1494 times.
1514 if (tlen > 0x7f) {
933
2/2
✓ Branch 0 taken 4 times.
✓ Branch 1 taken 16 times.
20 if (tlen < len) {
934 4 int64_t cur = avio_tell(pb);
935
936
1/2
✗ Branch 1 not taken.
✓ Branch 2 taken 4 times.
4 if (ffio_ensure_seekback(pb, 2 /* tflags */ + tlen + 4 /* next tag */))
937 break;
938
939
1/2
✓ Branch 2 taken 4 times.
✗ Branch 3 not taken.
4 if (check_tag(pb, cur + 2 + size_to_syncsafe(tlen), 4) == 1)
940 4 tlen = size_to_syncsafe(tlen);
941 else if (check_tag(pb, cur + 2 + tlen, 4) != 1)
942 break;
943 4 avio_seek(pb, cur, SEEK_SET);
944 } else
945 16 tlen = size_to_syncsafe(tlen);
946 }
947 }
948 2919 tflags = avio_rb16(pb);
949 2919 tunsync = tflags & ID3v2_FLAG_UNSYNCH;
950 } else {
951
1/2
✗ Branch 1 not taken.
✓ Branch 2 taken 4270 times.
4270 if (avio_read(pb, tag, 3) < 3)
952 break;
953 4270 tag[3] = 0;
954 4270 tlen = avio_rb24(pb);
955 }
956
1/2
✗ Branch 0 not taken.
✓ Branch 1 taken 7189 times.
7189 if (tlen > (1<<28))
957 break;
958 7189 len -= taghdrlen + tlen;
959
960
1/2
✗ Branch 0 not taken.
✓ Branch 1 taken 7189 times.
7189 if (len < 0)
961 break;
962
963 7189 next = avio_tell(pb) + tlen;
964
965
2/2
✓ Branch 0 taken 6629 times.
✓ Branch 1 taken 560 times.
7189 if (!tlen) {
966
2/2
✓ Branch 0 taken 13 times.
✓ Branch 1 taken 6616 times.
6629 if (tag[0])
967 13 av_log(s, AV_LOG_DEBUG, "Invalid empty frame %s, skipping.\n",
968 tag);
969 6629 continue;
970 }
971
972
1/2
✗ Branch 0 not taken.
✓ Branch 1 taken 560 times.
560 if (tflags & ID3v2_FLAG_DATALEN) {
973 if (tlen < 4)
974 break;
975 dlen = avio_rb32(pb);
976 tlen -= 4;
977 } else
978 560 dlen = tlen;
979
980 560 tcomp = tflags & ID3v2_FLAG_COMPRESSION;
981 560 tencr = tflags & ID3v2_FLAG_ENCRYPTION;
982
983 /* skip encrypted tags and, if no zlib, compressed tags */
984
1/2
✗ Branch 0 not taken.
✓ Branch 1 taken 560 times.
560 if (tencr || (!CONFIG_ZLIB && tcomp)) {
985 const char *type;
986 if (!tcomp)
987 type = "encrypted";
988 else if (!tencr)
989 type = "compressed";
990 else
991 type = "encrypted and compressed";
992
993 av_log(s, AV_LOG_WARNING, "Skipping %s ID3v2 frame %s.\n", type, tag);
994 avio_skip(pb, tlen);
995 /* check for text tag or supported special meta tag */
996
2/2
✓ Branch 0 taken 197 times.
✓ Branch 1 taken 363 times.
560 } else if (tag[0] == 'T' ||
997
2/2
✓ Branch 0 taken 187 times.
✓ Branch 1 taken 10 times.
197 !memcmp(tag, "USLT", 4) ||
998
3/4
✓ Branch 0 taken 89 times.
✓ Branch 1 taken 98 times.
✓ Branch 2 taken 89 times.
✗ Branch 3 not taken.
187 !strcmp(tag, comm_frame) ||
999
2/2
✓ Branch 0 taken 87 times.
✓ Branch 1 taken 2 times.
89 (extra_meta &&
1000 89 (extra_func = get_extra_meta_func(tag, isv34)))) {
1001 558 pbx = pb;
1002
1003
4/6
✓ Branch 0 taken 551 times.
✓ Branch 1 taken 7 times.
✓ Branch 2 taken 551 times.
✗ Branch 3 not taken.
✗ Branch 4 not taken.
✓ Branch 5 taken 551 times.
558 if (unsync || tunsync || tcomp) {
1004 7 av_fast_malloc(&buffer, &buffer_size, tlen);
1005
1/2
✗ Branch 0 not taken.
✓ Branch 1 taken 7 times.
7 if (!buffer) {
1006 av_log(s, AV_LOG_ERROR, "Failed to alloc %d bytes\n", tlen);
1007 goto seek;
1008 }
1009 }
1010
3/4
✓ Branch 0 taken 551 times.
✓ Branch 1 taken 7 times.
✗ Branch 2 not taken.
✓ Branch 3 taken 551 times.
558 if (unsync || tunsync) {
1011 7 uint8_t *b = buffer;
1012 7 uint8_t *t = buffer;
1013
1014
1/2
✗ Branch 1 not taken.
✓ Branch 2 taken 7 times.
7 if (avio_read(pb, buffer, tlen) != tlen) {
1015 av_log(s, AV_LOG_ERROR, "Failed to read tag data\n");
1016 goto seek;
1017 }
1018
1019 7 const uint8_t *const buf_end = t + tlen;
1020
2/2
✓ Branch 0 taken 111 times.
✓ Branch 1 taken 7 times.
118 while (t != buf_end) {
1021 111 *b++ = *t++;
1022
3/6
✓ Branch 0 taken 104 times.
✓ Branch 1 taken 7 times.
✗ Branch 2 not taken.
✓ Branch 3 taken 104 times.
✗ Branch 4 not taken.
✗ Branch 5 not taken.
111 if (t != buf_end && t[-1] == 0xff && !t[0])
1023 t++;
1024 }
1025
1026 7 ffio_init_read_context(&pb_local, buffer, b - buffer);
1027 7 tlen = b - buffer;
1028 7 pbx = &pb_local.pub; // read from sync buffer
1029 }
1030
1031 #if CONFIG_ZLIB
1032
1/2
✗ Branch 0 not taken.
✓ Branch 1 taken 558 times.
558 if (tcomp) {
1033 int err;
1034
1035 av_log(s, AV_LOG_DEBUG, "Compressed frame %s tlen=%d dlen=%ld\n", tag, tlen, dlen);
1036
1037 if (tlen <= 0)
1038 goto seek;
1039 if (dlen / 32768 > tlen)
1040 goto seek;
1041
1042 av_fast_malloc(&uncompressed_buffer, &uncompressed_buffer_size, dlen);
1043 if (!uncompressed_buffer) {
1044 av_log(s, AV_LOG_ERROR, "Failed to alloc %ld bytes\n", dlen);
1045 goto seek;
1046 }
1047
1048 if (!(unsync || tunsync)) {
1049 err = avio_read(pb, buffer, tlen);
1050 if (err < 0) {
1051 av_log(s, AV_LOG_ERROR, "Failed to read compressed tag\n");
1052 goto seek;
1053 }
1054 tlen = err;
1055 }
1056
1057 err = uncompress(uncompressed_buffer, &dlen, buffer, tlen);
1058 if (err != Z_OK) {
1059 av_log(s, AV_LOG_ERROR, "Failed to uncompress tag: %d\n", err);
1060 goto seek;
1061 }
1062 ffio_init_read_context(&pb_local, uncompressed_buffer, dlen);
1063 tlen = dlen;
1064 pbx = &pb_local.pub; // read from sync buffer
1065 }
1066 #endif
1067
4/4
✓ Branch 0 taken 547 times.
✓ Branch 1 taken 11 times.
✓ Branch 2 taken 41 times.
✓ Branch 3 taken 506 times.
558 if (s && (s->debug & AV_FDEBUG_ID3V2)) {
1068 41 int64_t pos = avio_tell(pbx);
1069 41 uint8_t *buf = av_malloc(tlen + 3U);
1070
1/2
✓ Branch 0 taken 41 times.
✗ Branch 1 not taken.
41 if (buf) {
1071 41 int n = avio_read(pbx, buf + 1, tlen);
1072
1/2
✓ Branch 0 taken 41 times.
✗ Branch 1 not taken.
41 if (n >= 0) {
1073 41 buf[0] = '|';
1074
2/2
✓ Branch 0 taken 567 times.
✓ Branch 1 taken 41 times.
608 for (unsigned i = 1; i <= n; i++)
1075
3/4
✓ Branch 0 taken 461 times.
✓ Branch 1 taken 106 times.
✗ Branch 2 not taken.
✓ Branch 3 taken 461 times.
567 if (!(buf[i] >= 0x20 && buf[i] < 0x7f))
1076 106 buf[i] = '.';
1077 41 buf[n + 1] = '|';
1078 41 buf[n + 2] = '\0';
1079 41 av_log(s, AV_LOG_INFO, "ID3v2 frame %.4s (%d bytes):%s\n",
1080 tag, tlen, buf);
1081 }
1082 41 av_free(buf);
1083 41 avio_seek(pbx, pos, SEEK_SET);
1084 }
1085 }
1086
2/2
✓ Branch 0 taken 363 times.
✓ Branch 1 taken 195 times.
558 if (tag[0] == 'T')
1087 /* parse text tag */
1088 363 read_ttag(s, pbx, tlen, metadata, tag);
1089
2/2
✓ Branch 0 taken 10 times.
✓ Branch 1 taken 185 times.
195 else if (!memcmp(tag, "USLT", 4))
1090 10 read_lang_descr_tag(s, pbx, "lyrics", tlen, metadata);
1091
2/2
✓ Branch 0 taken 98 times.
✓ Branch 1 taken 87 times.
185 else if (!strcmp(tag, comm_frame))
1092 98 read_lang_descr_tag(s, pbx, "comment", tlen, metadata);
1093 else
1094 /* parse special meta tag */
1095 87 extra_func->read(s, pbx, tlen, tag, extra_meta, isv34);
1096
1/2
✗ Branch 0 not taken.
✓ Branch 1 taken 2 times.
2 } else if (!tag[0]) {
1097 if (tag[1])
1098 av_log(s, AV_LOG_WARNING, "invalid frame id, assuming padding\n");
1099 avio_skip(pb, tlen);
1100 break;
1101 }
1102 /* Skip to end of tag */
1103 2 seek:
1104 560 avio_seek(pb, next, SEEK_SET);
1105 }
1106
1107 /* Footer preset, always 10 bytes, skip over it */
1108
3/4
✓ Branch 0 taken 33 times.
✓ Branch 1 taken 82 times.
✓ Branch 2 taken 82 times.
✗ Branch 3 not taken.
115 if (version == 4 && flags & 0x10)
1109 end += 10;
1110
1111 115 error:
1112
1/2
✗ Branch 0 not taken.
✓ Branch 1 taken 115 times.
115 if (reason)
1113 av_log(s, AV_LOG_INFO, "ID3v2.%d tag skipped, cannot handle %s\n",
1114 version, reason);
1115 115 avio_seek(pb, end, SEEK_SET);
1116 115 av_free(buffer);
1117 115 av_free(uncompressed_buffer);
1118 115 return;
1119 }
1120
1121 819 static void id3v2_read_internal(AVIOContext *pb, AVDictionary **metadata,
1122 AVFormatContext *s, const char *magic,
1123 ID3v2ExtraMeta **extra_metap, int64_t max_search_size)
1124 {
1125 int len, ret;
1126 uint8_t buf[ID3v2_HEADER_SIZE];
1127 819 ExtraMetaList extra_meta = { NULL };
1128 int found_header;
1129 int64_t start, off;
1130
1131
1/2
✓ Branch 0 taken 819 times.
✗ Branch 1 not taken.
819 if (extra_metap)
1132 819 *extra_metap = NULL;
1133
1134
3/4
✓ Branch 0 taken 10 times.
✓ Branch 1 taken 809 times.
✗ Branch 2 not taken.
✓ Branch 3 taken 10 times.
819 if (max_search_size && max_search_size < ID3v2_HEADER_SIZE)
1135 return;
1136
1137 819 start = avio_tell(pb);
1138 do {
1139 /* save the current offset in case there's nothing to read/skip */
1140 934 off = avio_tell(pb);
1141
4/4
✓ Branch 0 taken 20 times.
✓ Branch 1 taken 914 times.
✓ Branch 2 taken 10 times.
✓ Branch 3 taken 10 times.
934 if (max_search_size && off - start >= max_search_size - ID3v2_HEADER_SIZE) {
1142 10 avio_seek(pb, off, SEEK_SET);
1143 10 break;
1144 }
1145
1146 924 ret = ffio_ensure_seekback(pb, ID3v2_HEADER_SIZE);
1147
1/2
✓ Branch 0 taken 924 times.
✗ Branch 1 not taken.
924 if (ret >= 0)
1148 924 ret = avio_read(pb, buf, ID3v2_HEADER_SIZE);
1149
2/2
✓ Branch 0 taken 12 times.
✓ Branch 1 taken 912 times.
924 if (ret != ID3v2_HEADER_SIZE) {
1150 12 avio_seek(pb, off, SEEK_SET);
1151 12 break;
1152 }
1153 912 found_header = ff_id3v2_match(buf, magic);
1154
2/2
✓ Branch 0 taken 115 times.
✓ Branch 1 taken 797 times.
912 if (found_header) {
1155 /* parse ID3v2 header */
1156 115 len = ((buf[6] & 0x7f) << 21) |
1157 115 ((buf[7] & 0x7f) << 14) |
1158 115 ((buf[8] & 0x7f) << 7) |
1159 115 (buf[9] & 0x7f);
1160
1/2
✓ Branch 0 taken 115 times.
✗ Branch 1 not taken.
115 id3v2_parse(pb, metadata, s, len, buf[3], buf[5],
1161 extra_metap ? &extra_meta : NULL);
1162 } else {
1163 797 avio_seek(pb, off, SEEK_SET);
1164 }
1165
2/2
✓ Branch 0 taken 115 times.
✓ Branch 1 taken 797 times.
912 } while (found_header);
1166 819 ff_metadata_conv(metadata, NULL, ff_id3v2_34_metadata_conv);
1167 819 ff_metadata_conv(metadata, NULL, id3v2_2_metadata_conv);
1168 819 ff_metadata_conv(metadata, NULL, ff_id3v2_4_metadata_conv);
1169 819 merge_date(metadata);
1170
1/2
✓ Branch 0 taken 819 times.
✗ Branch 1 not taken.
819 if (extra_metap)
1171 819 *extra_metap = extra_meta.head;
1172 }
1173
1174 782 void ff_id3v2_read_dict(AVFormatContext *s, AVIOContext *pb, AVDictionary **metadata,
1175 const char *magic, ID3v2ExtraMeta **extra_meta)
1176 {
1177 782 id3v2_read_internal(pb, metadata, s, magic, extra_meta, 0);
1178 782 }
1179
1180 37 void ff_id3v2_read(AVFormatContext *s, const char *magic,
1181 ID3v2ExtraMeta **extra_meta, unsigned int max_search_size)
1182 {
1183 37 id3v2_read_internal(s->pb, &s->metadata, s, magic, extra_meta, max_search_size);
1184 37 }
1185
1186 97 void ff_id3v2_free_extra_meta(ID3v2ExtraMeta **extra_meta)
1187 {
1188 97 ID3v2ExtraMeta *current = *extra_meta, *next;
1189 const ID3v2EMFunc *extra_func;
1190
1191
2/2
✓ Branch 0 taken 87 times.
✓ Branch 1 taken 97 times.
184 while (current) {
1192
1/2
✓ Branch 1 taken 87 times.
✗ Branch 2 not taken.
87 if ((extra_func = get_extra_meta_func(current->tag, 1)))
1193 87 extra_func->free(&current->data);
1194 87 next = current->next;
1195 87 av_freep(&current);
1196 87 current = next;
1197 }
1198
1199 97 *extra_meta = NULL;
1200 97 }
1201
1202 41 int ff_id3v2_parse_apic(AVFormatContext *s, ID3v2ExtraMeta *extra_meta)
1203 {
1204 ID3v2ExtraMeta *cur;
1205
1206
2/2
✓ Branch 0 taken 80 times.
✓ Branch 1 taken 41 times.
121 for (cur = extra_meta; cur; cur = cur->next) {
1207 ID3v2ExtraMetaAPIC *apic;
1208 AVStream *st;
1209 int ret;
1210
1211
2/2
✓ Branch 0 taken 54 times.
✓ Branch 1 taken 26 times.
80 if (strcmp(cur->tag, "APIC"))
1212 54 continue;
1213 26 apic = &cur->data.apic;
1214
1215 26 ret = ff_add_attached_pic(s, NULL, NULL, &apic->buf, 0);
1216
1/2
✗ Branch 0 not taken.
✓ Branch 1 taken 26 times.
26 if (ret < 0)
1217 return ret;
1218 26 st = s->streams[s->nb_streams - 1];
1219 26 st->codecpar->codec_id = apic->id;
1220
1221
2/2
✓ Branch 0 taken 5 times.
✓ Branch 1 taken 21 times.
26 if (AV_RB64(st->attached_pic.data) == PNGSIG)
1222 5 st->codecpar->codec_id = AV_CODEC_ID_PNG;
1223
1224
2/2
✓ Branch 0 taken 10 times.
✓ Branch 1 taken 16 times.
26 if (apic->description[0])
1225 10 av_dict_set(&st->metadata, "title", apic->description, 0);
1226
1227 26 av_dict_set(&st->metadata, "comment", apic->type, 0);
1228 }
1229
1230 41 return 0;
1231 }
1232
1233 48 int ff_id3v2_parse_chapters(AVFormatContext *s, ID3v2ExtraMeta *cur)
1234 {
1235 48 AVRational time_base = {1, 1000};
1236 int ret;
1237
1238
2/2
✓ Branch 0 taken 84 times.
✓ Branch 1 taken 48 times.
132 for (unsigned i = 0; cur; cur = cur->next) {
1239 ID3v2ExtraMetaCHAP *chap;
1240 AVChapter *chapter;
1241
1242
2/2
✓ Branch 0 taken 74 times.
✓ Branch 1 taken 10 times.
84 if (strcmp(cur->tag, "CHAP"))
1243 74 continue;
1244
1245 10 chap = &cur->data.chap;
1246 10 chapter = avpriv_new_chapter(s, i++, time_base, chap->start,
1247 10 chap->end, chap->element_id);
1248
1/2
✗ Branch 0 not taken.
✓ Branch 1 taken 10 times.
10 if (!chapter)
1249 continue;
1250
1251
1/2
✗ Branch 1 not taken.
✓ Branch 2 taken 10 times.
10 if ((ret = av_dict_copy(&chapter->metadata, chap->meta, 0)) < 0)
1252 return ret;
1253 }
1254
1255 48 return 0;
1256 }
1257
1258 42 int ff_id3v2_parse_priv_dict(AVDictionary **metadata, ID3v2ExtraMeta *extra_meta)
1259 {
1260 ID3v2ExtraMeta *cur;
1261 42 int dict_flags = AV_DICT_DONT_OVERWRITE | AV_DICT_DONT_STRDUP_KEY | AV_DICT_DONT_STRDUP_VAL;
1262
1263
2/2
✓ Branch 0 taken 59 times.
✓ Branch 1 taken 42 times.
101 for (cur = extra_meta; cur; cur = cur->next) {
1264
2/2
✓ Branch 0 taken 47 times.
✓ Branch 1 taken 12 times.
59 if (!strcmp(cur->tag, "PRIV")) {
1265 47 ID3v2ExtraMetaPRIV *priv = &cur->data.priv;
1266 AVBPrint bprint;
1267 char *escaped, *key;
1268 int i, ret;
1269
1270
1/2
✗ Branch 1 not taken.
✓ Branch 2 taken 47 times.
47 if ((key = av_asprintf(ID3v2_PRIV_METADATA_PREFIX "%s", priv->owner)) == NULL) {
1271 return AVERROR(ENOMEM);
1272 }
1273
1274 47 av_bprint_init(&bprint, priv->datasize + 1, AV_BPRINT_SIZE_UNLIMITED);
1275
1276
2/2
✓ Branch 0 taken 282 times.
✓ Branch 1 taken 47 times.
329 for (i = 0; i < priv->datasize; i++) {
1277
5/6
✓ Branch 0 taken 205 times.
✓ Branch 1 taken 77 times.
✓ Branch 2 taken 187 times.
✓ Branch 3 taken 18 times.
✗ Branch 4 not taken.
✓ Branch 5 taken 187 times.
282 if (priv->data[i] < 32 || priv->data[i] > 126 || priv->data[i] == '\\') {
1278 95 av_bprintf(&bprint, "\\x%02x", priv->data[i]);
1279 } else {
1280 187 av_bprint_chars(&bprint, priv->data[i], 1);
1281 }
1282 }
1283
1284
1/2
✗ Branch 1 not taken.
✓ Branch 2 taken 47 times.
47 if ((ret = av_bprint_finalize(&bprint, &escaped)) < 0) {
1285 av_free(key);
1286 return ret;
1287 }
1288
1289
1/2
✗ Branch 1 not taken.
✓ Branch 2 taken 47 times.
47 if ((ret = av_dict_set(metadata, key, escaped, dict_flags)) < 0) {
1290 return ret;
1291 }
1292 }
1293 }
1294
1295 42 return 0;
1296 }
1297
1298 31 int ff_id3v2_parse_priv(AVFormatContext *s, ID3v2ExtraMeta *extra_meta)
1299 {
1300 31 return ff_id3v2_parse_priv_dict(&s->metadata, extra_meta);
1301 }
1302