Логотип exploitDog
bind:"CVE-2019-14906" OR bind:"CVE-2019-13616"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2019-14906" OR bind:"CVE-2019-13616"

Количество 21

Количество 21

oracle-oval логотип

ELSA-2019-4024

около 6 лет назад

ELSA-2019-4024: SDL security update (IMPORTANT)

EPSS: Низкий
redhat логотип

CVE-2019-14906

около 6 лет назад

A flaw was found with the RHSA-2019:3950 erratum, where it did not fix the CVE-2019-13616 SDL vulnerability. This issue only affects Red Hat SDL packages, SDL versions through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer overflow flaw while copying an existing surface into a new optimized one, due to a lack of validation while loading a BMP image, is possible. An application that uses SDL to parse untrusted input files may be vulnerable to this flaw, which could allow an attacker to make the application crash or execute code.

CVSS3: 8.1
EPSS: Низкий
nvd логотип

CVE-2019-14906

около 6 лет назад

A flaw was found with the RHSA-2019:3950 erratum, where it did not fix the CVE-2019-13616 SDL vulnerability. This issue only affects Red Hat SDL packages, SDL versions through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer overflow flaw while copying an existing surface into a new optimized one, due to a lack of validation while loading a BMP image, is possible. An application that uses SDL to parse untrusted input files may be vulnerable to this flaw, which could allow an attacker to make the application crash or execute code.

CVSS3: 9.8
EPSS: Низкий
ubuntu логотип

CVE-2019-13616

больше 6 лет назад

SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer over-read in BlitNtoN in video/SDL_blit_N.c when called from SDL_SoftBlit in video/SDL_blit.c.

CVSS3: 8.1
EPSS: Низкий
redhat логотип

CVE-2019-13616

больше 6 лет назад

SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer over-read in BlitNtoN in video/SDL_blit_N.c when called from SDL_SoftBlit in video/SDL_blit.c.

CVSS3: 8.1
EPSS: Низкий
nvd логотип

CVE-2019-13616

больше 6 лет назад

SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer over-read in BlitNtoN in video/SDL_blit_N.c when called from SDL_SoftBlit in video/SDL_blit.c.

CVSS3: 8.1
EPSS: Низкий
debian логотип

CVE-2019-13616

больше 6 лет назад

SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 ha ...

CVSS3: 8.1
EPSS: Низкий
github логотип

GHSA-2w82-mm6w-3vc9

больше 3 лет назад

A flaw was found with the RHSA-2019:3950 erratum, where it did not fix the CVE-2019-13616 SDL vulnerability. This issue only affects Red Hat SDL packages, SDL versions through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer overflow flaw while copying an existing surface into a new optimized one, due to a lack of validation while loading a BMP image, is possible. An application that uses SDL to parse untrusted input files may be vulnerable to this flaw, which could allow an attacker to make the application crash or execute code.

CVSS3: 9.8
EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2020:1990-1

около 5 лет назад

Security update for SDL

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2020:1916-1

около 5 лет назад

Security update for SDL

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2020:3261-1

около 5 лет назад

Security update for SDL

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2020:3030-1

больше 5 лет назад

Security update for SDL

EPSS: Низкий
github логотип

GHSA-v89f-grvw-gpv8

больше 3 лет назад

SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer over-read in BlitNtoN in video/SDL_blit_N.c when called from SDL_SoftBlit in video/SDL_blit.c.

CVSS3: 8.1
EPSS: Низкий
oracle-oval логотип

ELSA-2019-3951

около 6 лет назад

ELSA-2019-3951: SDL security update (IMPORTANT)

EPSS: Низкий
fstec логотип

BDU:2021-03748

больше 6 лет назад

Уязвимость функция BlitNtoN (video/SDL_blit_N.c) мультимедийной библиотеки Simple DirectMedia Layer, связанная с чтением за допустимыми границами буфера данных, позволяющая нарушителю получить доступ к конфиденциальным данным, а также вызвать отказ в обслуживании

CVSS3: 8.1
EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2019:2226-1

больше 6 лет назад

Security update for SDL2

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2019:2224-1

больше 6 лет назад

Security update for SDL2

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2019:2463-2

больше 5 лет назад

Security update for SDL2

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2019:2463-1

больше 6 лет назад

Security update for SDL2

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2019:2071-1

больше 6 лет назад

Security update for SDL_image

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
oracle-oval логотип
ELSA-2019-4024

ELSA-2019-4024: SDL security update (IMPORTANT)

около 6 лет назад
redhat логотип
CVE-2019-14906

A flaw was found with the RHSA-2019:3950 erratum, where it did not fix the CVE-2019-13616 SDL vulnerability. This issue only affects Red Hat SDL packages, SDL versions through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer overflow flaw while copying an existing surface into a new optimized one, due to a lack of validation while loading a BMP image, is possible. An application that uses SDL to parse untrusted input files may be vulnerable to this flaw, which could allow an attacker to make the application crash or execute code.

CVSS3: 8.1
1%
Низкий
около 6 лет назад
nvd логотип
CVE-2019-14906

A flaw was found with the RHSA-2019:3950 erratum, where it did not fix the CVE-2019-13616 SDL vulnerability. This issue only affects Red Hat SDL packages, SDL versions through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer overflow flaw while copying an existing surface into a new optimized one, due to a lack of validation while loading a BMP image, is possible. An application that uses SDL to parse untrusted input files may be vulnerable to this flaw, which could allow an attacker to make the application crash or execute code.

CVSS3: 9.8
1%
Низкий
около 6 лет назад
ubuntu логотип
CVE-2019-13616

SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer over-read in BlitNtoN in video/SDL_blit_N.c when called from SDL_SoftBlit in video/SDL_blit.c.

CVSS3: 8.1
6%
Низкий
больше 6 лет назад
redhat логотип
CVE-2019-13616

SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer over-read in BlitNtoN in video/SDL_blit_N.c when called from SDL_SoftBlit in video/SDL_blit.c.

CVSS3: 8.1
6%
Низкий
больше 6 лет назад
nvd логотип
CVE-2019-13616

SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer over-read in BlitNtoN in video/SDL_blit_N.c when called from SDL_SoftBlit in video/SDL_blit.c.

CVSS3: 8.1
6%
Низкий
больше 6 лет назад
debian логотип
CVE-2019-13616

SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 ha ...

CVSS3: 8.1
6%
Низкий
больше 6 лет назад
github логотип
GHSA-2w82-mm6w-3vc9

A flaw was found with the RHSA-2019:3950 erratum, where it did not fix the CVE-2019-13616 SDL vulnerability. This issue only affects Red Hat SDL packages, SDL versions through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer overflow flaw while copying an existing surface into a new optimized one, due to a lack of validation while loading a BMP image, is possible. An application that uses SDL to parse untrusted input files may be vulnerable to this flaw, which could allow an attacker to make the application crash or execute code.

CVSS3: 9.8
1%
Низкий
больше 3 лет назад
suse-cvrf логотип
openSUSE-SU-2020:1990-1

Security update for SDL

6%
Низкий
около 5 лет назад
suse-cvrf логотип
openSUSE-SU-2020:1916-1

Security update for SDL

6%
Низкий
около 5 лет назад
suse-cvrf логотип
SUSE-SU-2020:3261-1

Security update for SDL

6%
Низкий
около 5 лет назад
suse-cvrf логотип
SUSE-SU-2020:3030-1

Security update for SDL

6%
Низкий
больше 5 лет назад
github логотип
GHSA-v89f-grvw-gpv8

SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer over-read in BlitNtoN in video/SDL_blit_N.c when called from SDL_SoftBlit in video/SDL_blit.c.

CVSS3: 8.1
6%
Низкий
больше 3 лет назад
oracle-oval логотип
ELSA-2019-3951

ELSA-2019-3951: SDL security update (IMPORTANT)

около 6 лет назад
fstec логотип
BDU:2021-03748

Уязвимость функция BlitNtoN (video/SDL_blit_N.c) мультимедийной библиотеки Simple DirectMedia Layer, связанная с чтением за допустимыми границами буфера данных, позволяющая нарушителю получить доступ к конфиденциальным данным, а также вызвать отказ в обслуживании

CVSS3: 8.1
6%
Низкий
больше 6 лет назад
suse-cvrf логотип
openSUSE-SU-2019:2226-1

Security update for SDL2

больше 6 лет назад
suse-cvrf логотип
openSUSE-SU-2019:2224-1

Security update for SDL2

больше 6 лет назад
suse-cvrf логотип
SUSE-SU-2019:2463-2

Security update for SDL2

больше 5 лет назад
suse-cvrf логотип
SUSE-SU-2019:2463-1

Security update for SDL2

больше 6 лет назад
suse-cvrf логотип
openSUSE-SU-2019:2071-1

Security update for SDL_image

больше 6 лет назад

Уязвимостей на страницу