Search CVE reports


Toggle filters

1 – 10 of 45 results


CVE-2022-4743

Low priority
Vulnerable

A potential memory leak issue was discovered in SDL2 in GLES_CreateTexture() function in SDL_render_gles.c. The vulnerability allows an attacker to cause a denial of service attack. The vulnerability affects SDL2 v2.0.4 and above....

1 affected package

libsdl2

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libsdl2 Not affected Vulnerable Vulnerable Vulnerable
Show less packages

CVE-2022-34568

Low priority

Some fixes available 1 of 8

SDL v1.2 was discovered to contain a use-after-free via the XFree function at /src/video/x11/SDL_x11yuv.c.

2 affected packages

libsdl1.2, libsdl2

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libsdl1.2 Not in release Vulnerable Vulnerable Vulnerable
libsdl2 Not affected Not affected Not affected Not affected
Show less packages

CVE-2022-27470

Medium priority
Needs evaluation

SDL_ttf v2.0.18 and below was discovered to contain an arbitrary memory write via the function TTF_RenderText_Solid(). This vulnerability is triggered via a crafted TTF file.

1 affected package

libsdl2-ttf

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libsdl2-ttf Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2021-33657

Medium priority

Some fixes available 4 of 13

There is a heap overflow problem in video/SDL_pixels.c in SDL (Simple DirectMedia Layer) 2.x to 2.0.18 versions. By crafting a malicious .BMP file, an attacker can cause the application using this library to crash, denial of...

2 affected packages

libsdl2, libsdl1.2

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libsdl2 Not affected Not affected Vulnerable Vulnerable
libsdl1.2 Not in release Vulnerable Vulnerable Fixed
Show less packages

CVE-2020-14410

Medium priority

Some fixes available 2 of 3

SDL (Simple DirectMedia Layer) through 2.0.12 has a heap-based buffer over-read in Blit_3or4_to_3or4__inversed_rgb in video/SDL_blit_N.c via a crafted .BMP file.

2 affected packages

libsdl1.2, libsdl2

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libsdl1.2 Not in release Not affected Not affected Not affected
libsdl2 Not affected Not affected Fixed Fixed
Show less packages

CVE-2020-14409

Medium priority

Some fixes available 2 of 3

SDL (Simple DirectMedia Layer) through 2.0.12 has an Integer Overflow (and resultant SDL_memcpy heap corruption) in SDL_BlitCopy in video/SDL_blit_copy.c via a crafted .BMP file.

2 affected packages

libsdl1.2, libsdl2

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libsdl1.2 Not in release Not affected Not affected Not affected
libsdl2 Not affected Not affected Fixed Fixed
Show less packages

CVE-2019-7638

Medium priority

Some fixes available 7 of 10

SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer over-read in Map1toN in video/SDL_pixels.c.

2 affected packages

libsdl1.2, libsdl2

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libsdl1.2 Fixed
libsdl2 Fixed
Show less packages

CVE-2019-7637

Medium priority

Some fixes available 5 of 8

SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer overflow in SDL_FillRect in video/SDL_surface.c.

2 affected packages

libsdl1.2, libsdl2

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libsdl1.2 Fixed
libsdl2 Not affected
Show less packages

CVE-2019-7636

Medium priority

Some fixes available 7 of 10

SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer over-read in SDL_GetRGB in video/SDL_pixels.c.

2 affected packages

libsdl1.2, libsdl2

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libsdl1.2 Fixed
libsdl2 Fixed
Show less packages

CVE-2019-7635

Medium priority

Some fixes available 11 of 20

SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer over-read in Blit1to4 in video/SDL_blit_1.c.

4 affected packages

libsdl2, libsdl1.2, libsdl2-image, sdl-image1.2

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libsdl2 Not affected Not affected Not affected Fixed
libsdl1.2 Not in release Not affected Not affected Fixed
libsdl2-image Not affected Not affected Not affected Vulnerable
sdl-image1.2 Not affected Not affected Not affected Fixed
Show less packages