Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2019-13626

Опубликовано: 17 июл. 2019
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 4.3
CVSS3: 6.5

Описание

SDL (Simple DirectMedia Layer) 2.x through 2.0.9 has a heap-based buffer over-read in Fill_IMA_ADPCM_block, caused by an integer overflow in IMA_ADPCM_decode() in audio/SDL_wave.c.

РелизСтатусПримечание
bionic

not-affected

code not present
devel

DNE

disco

not-affected

code not present
eoan

not-affected

code not present
esm-apps/focal

not-affected

code not present
esm-apps/jammy

not-affected

code not present
esm-infra-legacy/trusty

not-affected

code not present
esm-infra/bionic

not-affected

code not present
esm-infra/xenial

not-affected

code not present
focal

not-affected

code not present

Показывать по

РелизСтатусПримечание
bionic

ignored

end of standard support, was needed
devel

not-affected

2.0.10+dfsg1-1ubuntu1
disco

ignored

end of life
eoan

not-affected

2.0.10+dfsg1-1ubuntu1
esm-apps/bionic

needed

esm-apps/focal

not-affected

2.0.10+dfsg1-1ubuntu1
esm-apps/xenial

needed

esm-infra-legacy/trusty

needed

focal

not-affected

2.0.10+dfsg1-1ubuntu1
groovy

not-affected

2.0.10+dfsg1-1ubuntu1

Показывать по

EPSS

Процентиль: 75%
0.00902
Низкий

4.3 Medium

CVSS2

6.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 6.5
redhat
больше 6 лет назад

SDL (Simple DirectMedia Layer) 2.x through 2.0.9 has a heap-based buffer over-read in Fill_IMA_ADPCM_block, caused by an integer overflow in IMA_ADPCM_decode() in audio/SDL_wave.c.

CVSS3: 6.5
nvd
больше 6 лет назад

SDL (Simple DirectMedia Layer) 2.x through 2.0.9 has a heap-based buffer over-read in Fill_IMA_ADPCM_block, caused by an integer overflow in IMA_ADPCM_decode() in audio/SDL_wave.c.

CVSS3: 6.5
debian
больше 6 лет назад

SDL (Simple DirectMedia Layer) 2.x through 2.0.9 has a heap-based buff ...

CVSS3: 6.5
github
больше 3 лет назад

SDL (Simple DirectMedia Layer) 2.x through 2.0.9 has a heap-based buffer over-read in Fill_IMA_ADPCM_block, caused by an integer overflow in IMA_ADPCM_decode() in audio/SDL_wave.c.

CVSS3: 6.5
fstec
почти 7 лет назад

Уязвимость функции IMA_ADPCM_decode() компонента audio/SDL_wave.c мультимедийной библиотеки Simple DirectMedia Layer, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 75%
0.00902
Низкий

4.3 Medium

CVSS2

6.5 Medium

CVSS3