Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

openSUSE-SU-2019:2226-1

Опубликовано: 30 сент. 2019
Источник: suse-cvrf

Описание

Security update for SDL2

This update for SDL2 fixes the following issues:

Security issues fixed:

  • CVE-2019-13616: Fixed heap-based buffer over-read in BlitNtoN in video/SDL_blit_N.c (bsc#1141844).
  • CVE-2019-13626: Fixed integer overflow in IMA_ADPCM_decode() in audio/SDL_wave.c (bsc#1142031).

This update was imported from the SUSE:SLE-15:Update update project.

Список пакетов

openSUSE Leap 15.1
libSDL2-2_0-0-2.0.8-lp151.4.6.1
libSDL2-2_0-0-32bit-2.0.8-lp151.4.6.1
libSDL2-devel-2.0.8-lp151.4.6.1
libSDL2-devel-32bit-2.0.8-lp151.4.6.1

Описание

SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer over-read in BlitNtoN in video/SDL_blit_N.c when called from SDL_SoftBlit in video/SDL_blit.c.


Затронутые продукты
openSUSE Leap 15.1:libSDL2-2_0-0-2.0.8-lp151.4.6.1
openSUSE Leap 15.1:libSDL2-2_0-0-32bit-2.0.8-lp151.4.6.1
openSUSE Leap 15.1:libSDL2-devel-2.0.8-lp151.4.6.1
openSUSE Leap 15.1:libSDL2-devel-32bit-2.0.8-lp151.4.6.1

Ссылки

Описание

SDL (Simple DirectMedia Layer) 2.x through 2.0.9 has a heap-based buffer over-read in Fill_IMA_ADPCM_block, caused by an integer overflow in IMA_ADPCM_decode() in audio/SDL_wave.c.


Затронутые продукты
openSUSE Leap 15.1:libSDL2-2_0-0-2.0.8-lp151.4.6.1
openSUSE Leap 15.1:libSDL2-2_0-0-32bit-2.0.8-lp151.4.6.1
openSUSE Leap 15.1:libSDL2-devel-2.0.8-lp151.4.6.1
openSUSE Leap 15.1:libSDL2-devel-32bit-2.0.8-lp151.4.6.1

Ссылки