Show filters
26 Total Results
Displaying 1-10 of 26
Sort by:
Attacker Value
Unknown
CVE-2022-4743
Disclosure Date: January 12, 2023 (last updated October 08, 2023)
A potential memory leak issue was discovered in SDL2 in GLES_CreateTexture() function in SDL_render_gles.c. The vulnerability allows an attacker to cause a denial of service attack. The vulnerability affects SDL2 v2.0.4 and above. SDL-1.x are not affected.
0
Attacker Value
Unknown
CVE-2022-34568
Disclosure Date: July 28, 2022 (last updated October 08, 2023)
SDL v1.2 was discovered to contain a use-after-free via the XFree function at /src/video/x11/SDL_x11yuv.c.
0
Attacker Value
Unknown
CVE-2021-33657
Disclosure Date: April 01, 2022 (last updated October 07, 2023)
There is a heap overflow problem in video/SDL_pixels.c in SDL (Simple DirectMedia Layer) 2.x to 2.0.18 versions. By crafting a malicious .BMP file, an attacker can cause the application using this library to crash, denial of service or Code execution.
0
Attacker Value
Unknown
CVE-2020-14410
Disclosure Date: January 19, 2021 (last updated February 22, 2025)
SDL (Simple DirectMedia Layer) through 2.0.12 has a heap-based buffer over-read in Blit_3or4_to_3or4__inversed_rgb in video/SDL_blit_N.c via a crafted .BMP file.
0
Attacker Value
Unknown
CVE-2020-14409
Disclosure Date: January 19, 2021 (last updated February 22, 2025)
SDL (Simple DirectMedia Layer) through 2.0.12 has an Integer Overflow (and resultant SDL_memcpy heap corruption) in SDL_BlitCopy in video/SDL_blit_copy.c via a crafted .BMP file.
0
Attacker Value
Unknown
CVE-2019-14906
Disclosure Date: January 07, 2020 (last updated February 21, 2025)
A flaw was found with the RHSA-2019:3950 erratum, where it did not fix the CVE-2019-13616 SDL vulnerability. This issue only affects Red Hat SDL packages, SDL versions through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer overflow flaw while copying an existing surface into a new optimized one, due to a lack of validation while loading a BMP image, is possible. An application that uses SDL to parse untrusted input files may be vulnerable to this flaw, which could allow an attacker to make the application crash or execute code.
0
Attacker Value
Unknown
CVE-2019-13616
Disclosure Date: July 16, 2019 (last updated November 08, 2023)
SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer over-read in BlitNtoN in video/SDL_blit_N.c when called from SDL_SoftBlit in video/SDL_blit.c.
0
Attacker Value
Unknown
CVE-2019-12220
Disclosure Date: May 20, 2019 (last updated November 08, 2023)
An issue was discovered in libSDL2.a in Simple DirectMedia Layer (SDL) 2.0.9 when used in conjunction with libSDL2_image.a in SDL2_image 2.0.4. There is an out-of-bounds read in the SDL function SDL_FreePalette_REAL at video/SDL_pixels.c.
0
Attacker Value
Unknown
CVE-2019-12218
Disclosure Date: May 20, 2019 (last updated November 08, 2023)
An issue was discovered in libSDL2.a in Simple DirectMedia Layer (SDL) 2.0.9 when used in conjunction with libSDL2_image.a in SDL2_image 2.0.4. There is a NULL pointer dereference in the SDL2_image function IMG_LoadPCX_RW at IMG_pcx.c.
0
Attacker Value
Unknown
CVE-2019-12221
Disclosure Date: May 20, 2019 (last updated November 08, 2023)
An issue was discovered in libSDL2.a in Simple DirectMedia Layer (SDL) 2.0.9 when used in conjunction with libSDL2_image.a in SDL2_image 2.0.4. There is a SEGV in the SDL function SDL_free_REAL at stdlib/SDL_malloc.c.
0