Описание
A buffer overflow vulnerability exists in the GIF image parsing functionality of SDL2_image-2.0.2. A specially crafted GIF image can lead to a buffer overflow on a global section. An attacker can display an image to trigger this vulnerability.
Пакеты
| Пакет | Статус | Версия исправления | Релиз | Тип |
|---|---|---|---|---|
| libsdl2-image | fixed | 2.0.3+dfsg1-1 | package | |
| sdl-image1.2 | fixed | 1.2.12-8 | package |
Примечания
https://www.talosintelligence.com/vulnerability_reports/TALOS-2017-0499
https://hg.libsdl.org/SDL_image/rev/45e750f92c84
EPSS
Связанные уязвимости
A buffer overflow vulnerability exists in the GIF image parsing functionality of SDL2_image-2.0.2. A specially crafted GIF image can lead to a buffer overflow on a global section. An attacker can display an image to trigger this vulnerability.
A buffer overflow vulnerability exists in the GIF image parsing functionality of SDL2_image-2.0.2. A specially crafted GIF image can lead to a buffer overflow on a global section. An attacker can display an image to trigger this vulnerability.
A buffer overflow vulnerability exists in the GIF image parsing functionality of SDL2_image-2.0.2. A specially crafted GIF image can lead to a buffer overflow on a global section. An attacker can display an image to trigger this vulnerability.
Уязвимость библиотеки загрузки изображений sdl-image, связанная с ошибками работы с памятью, позволяющая нарушителю вызвать отказ в обслуживании или нарушить целостность данных
EPSS