Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2019-13616

Опубликовано: 30 июл. 2019
Источник: redhat
CVSS3: 8.1

Описание

SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer over-read in BlitNtoN in video/SDL_blit_N.c when called from SDL_SoftBlit in video/SDL_blit.c.

A heap-based buffer overflow was discovered in SDL in the SDL_BlitCopy() function, that was called while copying an existing surface into a new optimized one, due to lack of validation while loading a BMP image in the SDL_LoadBMP_RW() function. An application that uses SDL to parse untrusted input files may be vulnerable to this flaw, which could allow an attacker to make the application crash or possibly execute code.

Меры по смягчению последствий

If the application accepts untrusted BMP files there is no known mitigation apart from applying the patch.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 5SDLOut of support scope
Red Hat Enterprise Linux 6SDLOut of support scope
Red Hat Enterprise Linux 7SDLFixedRHSA-2019:395025.11.2019
Red Hat Enterprise Linux 8SDLFixedRHSA-2019:395125.11.2019
Red Hat Enterprise Linux 8.0 Update Services for SAP SolutionsSDLFixedRHSA-2020:029330.01.2020

Показывать по

Дополнительная информация

Статус:

Important
Дефект:
CWE-787
Дефект:
CWE-125
https://bugzilla.redhat.com/show_bug.cgi?id=1747237SDL: heap-based buffer overflow in SDL blit functions in video/SDL_blit*.c

8.1 High

CVSS3

Связанные уязвимости

CVSS3: 8.1
ubuntu
больше 6 лет назад

SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer over-read in BlitNtoN in video/SDL_blit_N.c when called from SDL_SoftBlit in video/SDL_blit.c.

CVSS3: 8.1
nvd
больше 6 лет назад

SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer over-read in BlitNtoN in video/SDL_blit_N.c when called from SDL_SoftBlit in video/SDL_blit.c.

CVSS3: 8.1
debian
больше 6 лет назад

SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 ha ...

suse-cvrf
около 5 лет назад

Security update for SDL

suse-cvrf
около 5 лет назад

Security update for SDL

8.1 High

CVSS3